码迷,mamicode.com
首页 > 其他好文 > 详细

​OSSIM事件分类/子类总结表

时间:2015-06-24 19:18:45      阅读:129      评论:0      收藏:0      [点我收藏+]

标签:ossim

OSSIM事件类/子类总结表

事件 类/子类

数据源分类

Access

ACL Deny

ACL Permit

ConnectionClosed

ConnectionOpened

File Access

File Blocked

Firewall Deny

Firewall Misc Event

Firewall Permit

Timeout

Traffic Inbound

Traffic Outbound

Tunnel Closed

Tunnel Connection

Web Appliation Access

Alarm

Attacks

Bruteforce

Dos

Malware

Misc

Network

Policy

Scada

Scan

Aert

HostIDS Alert

IDS Alert

IPS Alert

Availability

State Critical

State Down

State Unknown

State Up

State Warning

Database

Error

Login

Login Failed

Logout

Query

Start

Stop

Recon

Misc

Scanner

Application

DHCP Error

DHCP Request

DNS Succesful Zone Tranfer

DNS Zone Transfer Failed

FTP commandExecuted

FTPConnectionOpened

Mail Received

Mail Sent

Spam Detected

VPN Closed

VPN Denied

Web Error

Web Denied

Web Modified

WebProxy

Web Redirected

Authentication

Account Lockout

Admin Access

Brute force

Default Credentials

Failed

FTP Login Failed

FTP Login Succeeded

Goup Added

Goup Deleted

Login

Logout

Password Change Failed

Password Change Succeeded

User Changed

User Created

User Deleted

Exploit

Attack Response

Buffer Overflow

Command Execution

Cross Site Scripting

Denial Of Service

Directory Traversal

File Inclusion

Format String

Spoofing

ShellCode

SQL Injection

Malware

Adware

Backdoor

Fake Antivirus

Generic

KeyLogger

Spyware

Trojan

Virus

Worm

Policy

Anonymity

Check Failed

Instant Messaging Chat

P2P

Phishing

Porn

Suspicious

Bad Traffic

Blacklist Address

Database Activity

DNS Protocol Anomaly

FTP Protocol Anomaly

HTTP Protocol Anomaly

Mail Protocol Anomaly

Netbios Activity

Network Anomaly

NFS Activity

RPC Activity

ScadaActivity

SSH Activity

SSH Protocol Anomaly

Telnet Protocol Anomaly

Threshold Exceeded

Web Attack or Scan

Inventory

Mac Change

MacDetected

Operating System Change

Operating System Detected

Service Change

Service Detected

ServiceMisc

 

 

​OSSIM事件分类/子类总结表

标签:ossim

原文地址:http://chenguang.blog.51cto.com/350944/1665118

(0)
(0)
   
举报
评论 一句话评论(0
登录后才能评论!
© 2014 mamicode.com 版权所有  联系我们:gaon5@hotmail.com
迷上了代码!