Security Onion is a free and open source Linux distribution for intrusion detection, enterprise security monitoring, and log management. It includes Elasticsearch, Logstash, Kibana, Snort, Suricata, Bro, OSSEC, Sguil, Squert, NetworkMiner, and many other security tools. The easy-to-use Setup wizard allows you to build an army of distributed sensors for your enterprise in minutes!
For more information about Security Onion, please see our main website, blog, and wiki.
This repo contains the ISO image, Wiki, and Roadmap for Security Onion.
Please proceed to the Verify_ISO page.
Please proceed to the Wiki.
Please proceed to the Help page.
Please send questions to the Security Onion mailing list.
Please proceed to the Roadmap.
This repo stores no source code. You can get the source for any of our packages by doing the following at a terminal (replacing PACKAGE-NAME with the name of the package that you want the source for):
apt-get source PACKAGE-NAME
Some of our packages have their own Github repos at Security-Onion-Solutions.