<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Red 7</title>
	<atom:link href="http://www.red-7.co.uk/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.red-7.co.uk</link>
	<description>Intrusion Detection, Analysis &#38; Prevention</description>
	<lastBuildDate>Tue, 24 Aug 2010 19:32:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Tiny Post &#8211; Snort/Ubuntu libpcre.so.0 error</title>
		<link>http://www.red-7.co.uk/2010/08/24/tiny-post-snortubuntu-libpcre-so-0-error/</link>
		<comments>http://www.red-7.co.uk/2010/08/24/tiny-post-snortubuntu-libpcre-so-0-error/#comments</comments>
		<pubDate>Tue, 24 Aug 2010 19:32:33 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=308</guid>
		<description><![CDATA[Just for quick reference, newer versions of libpcre will install (on Ubuntu anyway) the shared object libraries in the following structure: /usr/lib/libpcre.so Snort, and many other apps will look for the libpcre.so.0 file. Simple fix, symlink the new one to the old name: ln -s /usr/lib/libpcre.so /usr/lib/libpcre.so.0 This should fix any errors, and can be [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/08/24/tiny-post-snortubuntu-libpcre-so-0-error/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tiny Post &#8211; Checkinstall</title>
		<link>http://www.red-7.co.uk/2010/05/19/tiny-post-checkinstall/</link>
		<comments>http://www.red-7.co.uk/2010/05/19/tiny-post-checkinstall/#comments</comments>
		<pubDate>Wed, 19 May 2010 17:48:34 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Ubuntu]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=299</guid>
		<description><![CDATA[Installing from source, no deinstall options in the make file? No problem! &#8211; Use checkinstall instead! On Debian based operating systems, such as Ubuntu, installing software from source often causes issues when we want to remove it. However, with this little gem (that has somehow avoided me up until now) you can remove software built [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/05/19/tiny-post-checkinstall/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Power of Virtualisation for Comprehensive Intrusion Detection</title>
		<link>http://www.red-7.co.uk/2010/03/08/286/</link>
		<comments>http://www.red-7.co.uk/2010/03/08/286/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 23:02:00 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=286</guid>
		<description><![CDATA[Virtualisation is not something we usually associate with intrusion detection capability (minus perhaps consolidating your back-office technology &#38; the cost saving and green benefits that brings) however there is much to be gained from developing solutions around virtual environments. Take for example the traditional sensor configuration, many implementations will focus around a single product. From [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/03/08/286/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sans Security 558 &#8211; Network Forensics</title>
		<link>http://www.red-7.co.uk/2010/03/08/sans-security-558-network-forensics/</link>
		<comments>http://www.red-7.co.uk/2010/03/08/sans-security-558-network-forensics/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 22:59:13 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=284</guid>
		<description><![CDATA[I will be using this post to review, day by day, the content of this course whilst I&#8217;m over here in Orlando. The course is being lead by Jonathan Ham, of jham corp and co-written by Sherri Davidoff, who have now both converged to form Lake Missoula Group &#8211; an independent, vendor-neutral consulting collective. The [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/03/08/sans-security-558-network-forensics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Bash Script &#8211; Automatic IMDb Genre &amp; Artwork For Movie Files</title>
		<link>http://www.red-7.co.uk/2010/03/03/bash-script-automatic-imdb-genre-artwork-for-movie-files/</link>
		<comments>http://www.red-7.co.uk/2010/03/03/bash-script-automatic-imdb-genre-artwork-for-movie-files/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 00:00:56 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=265</guid>
		<description><![CDATA[I wrote a little bash script on the weekend. Concept is simple, it takes a file name and directory as command line arguments, then searches IMDb for the title, returning the artwork (600x600px) and the genre. Script then moves the file to a given location under the &#8220;genre&#8221; folder. For example I have a folder [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/03/03/bash-script-automatic-imdb-genre-artwork-for-movie-files/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Installing Snorby With Apache2 on Ubuntu 9.04 Server</title>
		<link>http://www.red-7.co.uk/2010/03/02/installing-snorby-with-apache2-on-ubuntu-9-04-server/</link>
		<comments>http://www.red-7.co.uk/2010/03/02/installing-snorby-with-apache2-on-ubuntu-9-04-server/#comments</comments>
		<pubDate>Tue, 02 Mar 2010 20:06:43 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Technical Articles]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[Snorby]]></category>
		<category><![CDATA[Snort]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=253</guid>
		<description><![CDATA[Today I spent the majority of the day installing and configuring a new Snorby frontend server for testing. I am documenting the process here and will be submitting the process to Snorby.org to add to the wiki. I will be making some inital assumptions that you are comfortable using the command line, have some experience [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/03/02/installing-snorby-with-apache2-on-ubuntu-9-04-server/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Tiny Post &#8211; WordMobi</title>
		<link>http://www.red-7.co.uk/2010/02/27/tiny-post-wordmobi/</link>
		<comments>http://www.red-7.co.uk/2010/02/27/tiny-post-wordmobi/#comments</comments>
		<pubDate>Sat, 27 Feb 2010 03:21:55 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Wordpress]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=251</guid>
		<description><![CDATA[I have been recently searching for a decent WordPress platform for my Nokia E71. I have tried a fair few options along the way but have now settled for WordMobi &#8211; so far I&#8217;m very impressed &#038; I&#8217;m currently using it to post this entry. A simple, yet powerful and effective tool for any blogger. [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/02/27/tiny-post-wordmobi/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tiny Post &#8211; Twonky Auto Rescan</title>
		<link>http://www.red-7.co.uk/2010/02/26/tiny-post-twonky-auto-rescan/</link>
		<comments>http://www.red-7.co.uk/2010/02/26/tiny-post-twonky-auto-rescan/#comments</comments>
		<pubDate>Fri, 26 Feb 2010 20:43:37 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Twonky]]></category>
		<category><![CDATA[Ubuntu]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/2010/02/26/tiny-post-twonky-auto-rescan/</guid>
		<description><![CDATA[Just a quick note for anyone who may be having issues with Ubuntu 8.04 and Twonky auto-rescanning their content directories &#8211; seems to be a bug in 8.04. Upgrading to 8.10 or 9.04 fixes the issue. I&#8217;m thinking its an issue with the inotify kernel module as recompiling from vanilla and building the inotify module [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/02/26/tiny-post-twonky-auto-rescan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Snorby For The Win!</title>
		<link>http://www.red-7.co.uk/2010/02/23/snorby-for-the-win/</link>
		<comments>http://www.red-7.co.uk/2010/02/23/snorby-for-the-win/#comments</comments>
		<pubDate>Tue, 23 Feb 2010 20:39:10 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Reviews]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[Snort]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=243</guid>
		<description><![CDATA[I have recently been doing a fair bit of work trying to find a replacement for my Acid/BASE frontend of Snort. This has been proving somewhat difficult, the closest I have come to a usable solution was modifying Splunk to use custom filters etc, however, although Splunk is an incredibly powerful analysis tool, it seems [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/02/23/snorby-for-the-win/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>The Problem With SIEM (and I don&#8217;t mean the product&#8230;)</title>
		<link>http://www.red-7.co.uk/2010/01/28/the-problem-with-siem-and-i-dont-mean-the-product/</link>
		<comments>http://www.red-7.co.uk/2010/01/28/the-problem-with-siem-and-i-dont-mean-the-product/#comments</comments>
		<pubDate>Thu, 28 Jan 2010 20:19:50 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.red-7.co.uk/?p=238</guid>
		<description><![CDATA[Let begin with a recap of the definition of SIEM, SIM &#38; SEM &#8211; Security (Information &#38; Event) Management. The parentheses are deliberate &#8211; their contents are actually irrelevant when dealing with this definition. IMHO the term was developed to cater for the security vendors and has since been misused, much like many other security [...]]]></description>
		<wfw:commentRss>http://www.red-7.co.uk/2010/01/28/the-problem-with-siem-and-i-dont-mean-the-product/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
