{"id":11262,"date":"2022-01-07T20:17:10","date_gmt":"2022-01-07T17:17:10","guid":{"rendered":"https:\/\/kifarunix.com\/?p=11262"},"modified":"2024-03-14T19:14:38","modified_gmt":"2024-03-14T16:14:38","slug":"install-zeek-on-debian-11","status":"publish","type":"post","link":"https:\/\/kifarunix.com\/install-zeek-on-debian-11\/","title":{"rendered":"Install Zeek on Debian 11"},"content":{"rendered":"\n

Follow through this tutorial to learn how to install Zeek on Debian 11. Zeek<\/a>, formerly Bro IDS, is the world’s leading passive open source network security monitoring tool. Zeek is not an active security device, like a firewall or intrusion prevention system. Rather, Zeek sits on a “sensor\u201d, a hardware, software, virtual, or cloud platform that quietly and unobtrusively observes network traffic. Zeek interprets what it sees and creates compact, high-fidelity transaction logs, file content, and fully customized output, suitable for manual review on disk or in a more analyst-friendly tool like a security and information event management (SIEM) system<\/em>.<\/p>\n\n\n\n

Installing Zeek on Debian 11<\/h2>\n\n\n\n

Zeek can be installed by building it from the source code<\/a> or by directly via the Zeek APT repositories<\/a>.<\/p>\n\n\n\n

In this tutorial, we will install Zeek via the APT repositories.<\/p>\n\n\n\n

Install Zeek on Debian<\/h3>\n\n\n\n

To install Zeek on Debian from the Zeek APT repositories;<\/p>\n\n\n\n