OSSEC is an Open Source Host-based Intrusion Detection System. It performs log analysis, integrity checking, Windows registry monitoring, rootkit detection, real-time alerting and active response. It runs on most operating systems, including Linux, OpenBSD, FreeBSD, Mac OS X, Solaris and Windows. A list with all supported platforms is available at: :ref:`supported-systems`
Note
OSSEC+ extends OSSEC with additional capabilities such as ELK integration, community threat sharing, and machine learning. Registration is free.
.. toctree:: :maxdepth: 2 docs/manual/non-technical-overview docs/manual/ossec-architecture docs/manual/supported-systems
.. toctree:: :maxdepth: 2 :glob: docs/manual/index
.. toctree::
:maxdepth: 2
docs/syntax/index
docs/programs/index
docs/formats/index
docs/examples/index
docs/log_samples/index
.. toctree::
:maxdepth: 1
changelog
.. toctree:: :maxdepth: 2 :glob: docs/faq/index docs/cookbooks/index
.. toctree:: :maxdepth: 2 :glob: docs/development/build/index docs/development/oRFC/index docs/development/doc-maintenance about/index