Ossec & Ossim Unified Open Source Security <Works 100%>
An open-source Host-based Intrusion Detection System (HIDS). It sits on your servers and endpoints to perform:
Collects events from OSSEC agents and other network tools (like Snort or OpenVAS). OSSEC & OSSIM Unified Open Source Security
Evaluates the severity of threats based on asset value and vulnerability data. How They Work Together An open-source Host-based Intrusion Detection System (HIDS)