Skip to content
/ rhids Public

Host-based Intrusion Detection System for Linux Containers

License

Notifications You must be signed in to change notification settings

amrabed/rhids

Repository files navigation

Build Status Code Quality Known Vulnerabilities GitHub issues GitHub (pre-)release License

RHIDS

Host-based Intrusion Detection System for Linux Containers*

To use rhids, please make sure you have strace-docker installed. rhids depends on strace-docker for collecting system calls from running containers.

Usage

Basic install

git clone https://github.com/amrabed/rhids && sudo ./rhids/install
sudo su 
rhids -h

How to use the RHIDS tool

Using Docker

docker run -it --rm --name rhids -v /var/log/strace-docker:/var/log/strace-docker amrabed/rhids

* Implemented as part of my Ph.D. dissertation research. See this paper for more details

About

Host-based Intrusion Detection System for Linux Containers

Topics

Resources

License

Stars

Watchers

Forks

Sponsor this project

Packages

No packages published