How to Install and Uninstall sagan-rules Package on Ubuntu 21.10 (Impish Indri)

Last updated: April 30,2024

1. Install "sagan-rules" package

Here is a brief guide to show you how to install sagan-rules on Ubuntu 21.10 (Impish Indri)

$ sudo apt update $ sudo apt install sagan-rules

2. Uninstall "sagan-rules" package

Learn how to uninstall sagan-rules on Ubuntu 21.10 (Impish Indri):

$ sudo apt remove sagan-rules $ sudo apt autoclean && sudo apt autoremove

3. Information about the sagan-rules package on Ubuntu 21.10 (Impish Indri)

Package: sagan-rules
Architecture: all
Version: 1:20170725-1.1
Priority: extra
Section: universe/admin
Origin: Ubuntu
Maintainer: Ubuntu Developers
Original-Maintainer: Pierre Chifflier
Bugs: https://bugs.launchpad.net/ubuntu/+filebug
Installed-Size: 3150
Filename: pool/universe/s/sagan-rules/sagan-rules_20170725-1.1_all.deb
Size: 219460
MD5sum: 20e11b4f8e8ba49c6e482490db1b285d
SHA1: 1dfe5ea513674a14e15ff8f0c09479764933318f
SHA256: 60b2c8ac96932fb9c10d79a4c772ab50f1d04f147aefdf99813f57e0306e67cb
SHA512: 02825d847bb97a5a4fdc40c9681a0d1818a5f9ee107ae8a4e1228d6872b8b3158194b93bd0ab4b41f1a707165df8f1971320006d8952f7dd6625555d61d5e921
Homepage: https://quadrantsec.com/sagan_log_analysis_engine/
Description-en: Real-time System & Event Log Monitoring System [rules]
Sagan is a multi-threaded, real time system- and event-log monitoring
system, but with a twist. Sagan uses a “Snort” like rule set for
detecting malicious events happening on your network and/or computer
systems.
If Sagan detects a potentially bad event, that event can be stored to a
Snort database (MySQL/PostgreSQL), send it to a SIEM tool like Prelude,
or send an email.
.
This package provides the rules for Sagan.
Description-md5: 9a71019afb085798538636d7822b70d5