Download List

Project Description

samhain is a daemon that can check file integrity, search the file tree for SUID files, and detect kernel module rootkits (Linux only). It can be used either standalone or as a client/server system for centralized monitoring, with strong (192-bit AES) encryption for client/server connections and the option to store databases and configuration files on the server. For tamper resistance, it supports signed database/configuration files and signed reports/audit logs. It has been tested on Linux, FreeBSD, Solaris, AIX, HP-UX, and Unixware.

System Requirements

System requirement is not defined
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2009-10-14 06:00
2.5.10

This release fixes a race condition that would cause problems with stale file handles under certain conditions. The check for suid files handles the $HOME/.gvfs mount more gracefully now,
Tags: Minor bugfixes

2009-08-13 23:03
2.5.8

This release fixes two bugs in the mailer code: MX resolving would fail sometimes, and a deadlock could occur.
Tags: Bug fixes

2009-07-23 16:20
2.5.7

A potential deadlock has been fixed along with a configuration reload bug in the 'userfiles' module. C99-style comments have been removed to improve portability, and the format of the date header of emails has been corrected.
Tags: Minor bugfixes

2009-05-06 07:29
2.5.5

For relayed messages, the incorrect order of hostname insertion into an RDBMS has been fixed. Some compiler warnings have been resolved, and a minor memory leak in the process check module has been fixed.
Tags: Minor bugfixes

2009-03-06 03:24
2.5.4

This version fixes a flaw that would allow clients to bypass authentication when connecting to the server. A new KernelCheckPCI option has been added to switch off checking of PCI expansion ROMs.
Tags: Minor security fixes

Project Resources