Main Features.
=============
A new type of senor for intrusion prevention has been added to
GeNUDetect. It is based on inline-Snort.
ACID was replaced by a fully integrated Event-GUI based on an
ASP-Framework.
This provides improved session management
and much better response times.
Historical databases with multiple versions of the event database
(week, month) and combined queries for live
and archive databases.
Printable Reports as PDF file.
.
Big Sister was replaced by monit,
which now fetaures as process master for the Central Server.
Network Packets can now be downloaded for further analysis
with tcpdump, ethereal, p0f and so on.
Automatic email, if the central detects new signatures or patches.
Upgrading GeNUDetect
====================
This section describes the necessary steps to upgrade your GeNUDetect
2.0 to the version 2.1. If you still use GeNUDetect 1.0 or 1.1, please
contact our support team.
Hardware requirements for GeNUDetect 2.1
----------------------------------------
In principle, your hardware supported by GeNUDetect 2.0 is still
compatible with GeNUDetect 2.1. However, due to extended features, we
had to increase the requirements for memory on the Central server and
the Sensors.
* Central Server
Processor: Pentium IV, Xeon, Hyperthreading and multi-processor
possible
RAM: 2GB min., max. 4 GB
* Sensors
Processor: Pentium IV, Xeon, Hyperthreading and multi-processor
possible.
RAM: 1 GB min., 4 GB max.
In case of doubt, give us a call
and ask our support team for a complete list of hardware requirements.
Backup
------
Before upgrading your GeNUDetect system, please backup your database.
For this, log into the GUI using your favorite browser and click
Central->Tasks->Full Backup. Now, using scp, winscp or a similar tool
copy the file
/usr/local/snort/db_backup/all_db_20.sql.bz2
to a safe place.
Upgrade
-------
To perform the upgrade, perform the following steps:
* Insert the GeNUDetect 2.1 CDROM into your central's drive.
* Log onto your central on the console. Remote Login is not recommended!
* Mount the CDROM with the command "mount /cdrom"
* Change your current working directory to /root with "cd /root"
* Start the upgrade using the command "sh /cdrom/upgrade.sh"
* From time to time, the upgrade program will ask you some questions.
* After the upgrade, a reboot is necessary. Do not forget to remove the
CDROM from the drive..