Hookem-Banem

 2 likes

Built to react fast in server farms environments (ISPs, HSPs, organisations...) Hookem-Banem is a log monitoring system which monitors logs being sent to a central server (syslog, file...) and on detection of malicious intent (repeated login failures, many failed RCPT commands...

License model

  • FreeOpen Source

Application type

Platforms

  • Linux
  • Self-Hosted
  No rating
2 likes
0comments
0 news articles

Features

Suggest and vote on features
  1.  Distributed
  2.  Firewall
  3.  Support for IPv6

Hookem-Banem News & Activities

Highlights All activities

Recent activities

No activities found.
Show all activities

Hookem-Banem information

  • Licensing

    Open Source (GPL-3.0) and Free product.
  • Written in

  • Alternatives

    8 alternatives listed
  • Supported Languages

    • English

AlternativeTo Category

Security & Privacy

GitHub repository

  •  1 Stars
  •  0 Forks
  •  0 Open Issues
  •   Updated Jan 16, 2024 
View on GitHub

Our users have written 0 comments and reviews about Hookem-Banem, and it has gotten 2 likes

Hookem-Banem was added to AlternativeTo by James Hook on Jun 18, 2019 and this page was last updated Jun 18, 2019.
No comments or reviews, maybe you want to be first?
Post comment/review

What is Hookem-Banem?

Built to react fast in server farms environments (ISPs, HSPs, organisations...) Hookem-Banem is a log monitoring system which monitors logs being sent to a central server (syslog, file...) and on detection of malicious intent (repeated login failures, many failed RCPT commands, bad HTTP requests... any other repeating condition you want to monitor for) it broadcasts a ban command to all servers in the cluster so the clients running on each machine can drop/reject any future connections from the attacker for a limited time (and on continued repeats even longer periods)

You can just monitor sshd logs for individual matching lines or using the built in pattern matching (generated line X then generated line Y), Hookem-Banem can be configured to only block specific attack attempts.

Official Links