What is Doorman

A free endpoint security tool for host investigative capabilities to find signs of malicious activity through memory and file analysis.

Doorman: An Osquery Fleet Management Tool

Doorman is an osquery fleet manager that enables administrators to manage osquery configurations from a distance, which are retrieved by nodes. Administrators can dynamically adjust the collection of packs, queries, and/or file integrity monitoring target paths by using tags. Doorman leverages osquery's TLS configuration, logger, and distributed read/write endpoints to provide administrators with visibility across a fleet of devices, all while maintaining minimal overhead and intrusiveness. At a glance, Doorman relies heavily on tags. A node's configuration is influenced by the tags it shares with packs, queries, and/or file paths. When tags are added or removed, the configuration of a node will change accordingly.

For example, it's possible to assign baseline tags to packs and queries

For example, you can assign a set of packs and queries a baseline tag. To make sure that all nodes receive this baseline configuration, simply assign the baseline tag to the nodes you want to include. State of the node: Click on any node to see its recent activity, original enrollment date, time of the last check-in, and the specific set of packs and queries that are configured for it.

This view provides a quick overview...

This view offers a quick overview of the current state of a node. Distributed queries: With Doorman, you have the ability to distribute a
 

Doorman Reviews

Write a Review

No reviews yet. Be the first to review this tool!

Write a Review

Share your experience with Doorman tool and help others make informed decisions.

Featured

Specops Software
Free

Specops Software View Specops Software

Specops Software empowers organizations to fortify their IT security by addressing the critical vulnerability of password management and authentication. As a premier vendor, Specops Software provides advanced solutions designed to proactively block weak passwords, enforce robust authentication protocols, and ensure compliance with stringent industry standards like CJIS and HITRUST. With deep native integration into Active Directory and on-premises data storage, Specops Software offers unparalleled security and control for sensitive business data.

Active Directory password policy auditing against compliance standards
Breached password detection for over 900 million known compromised passwords
Zero-trust access evaluation and enhancement
Infisical
Free

Infisical View Infisical

Infisical is the premier open-source platform designed for unified management of secrets, certificates, and configurations across your entire organization. It seamlessly integrates into your development workflows, CI/CD pipelines, and cloud infrastructure, ensuring secure storage and automated injection of sensitive information. Empower your team with robust features like versioning, point-in-time recovery, comprehensive audit logging, and automated secret rotation for enhanced security and operational efficiency.

Open-source secrets management platform
Unified management of secrets, certificates, and configs
Seamless integration with development workflows and CI/CD
Click Studios
Free

Click Studios View Click Studios

Click Studios is an Australian-based Agile software development company dedicated to evolving Passwordstate, their robust Enterprise Password Management solution. Continuously refined through customer insights and cybersecurity advancements, Passwordstate offers advanced features for secure sensitive information management and stringent compliance. Click Studios provides scalable, secure, and user-friendly password management solutions, empowering businesses globally with affordable and reliable access control.

Secure Enterprise Password Management
Continuous Feature Enhancement
Customer Feedback Driven Development

Similar Tools

Trend Vision One - Endpoint Security
Free

Trend Vision One - Endpoint Security View Trend Vision One - Endpoint Security

AhnLab PLUS is a unified security platform providing comprehensive cybersecurity solutions for businesses.

Absolute Control
Free

Absolute Control View Absolute Control

Comprehensive endpoint protection solution providing advanced threat detection, proactive defense, and efficient management.

OSSEC
Free

OSSEC View OSSEC

OSSEC is a robust, open-source Host-based Intrusion Detection System (HIDS) designed for comprehensive security monitoring and analysis across diverse platforms. Its advanced capabilities include deep log analysis, file integrity verification, rootkit detection, and real-time alerting, ensuring continuous protection against threats. OSSEC excels at centralized policy enforcement and active response, making it an indispensable tool for maintaining robust security postures in complex IT environments.

Scalable, multi-platform Host-based Intrusion Detection System (HIDS)
Advanced log analysis and correlation engine
File integrity checking and monitoring
ClamAV
Free

ClamAV View ClamAV

ClamAV is a robust, open-source antivirus engine designed for comprehensive threat detection across diverse environments. Its versatile architecture is ideal for defending email gateways, web servers, and endpoints from malware, viruses, and other malicious threats. Optimized for scalability and performance, ClamAV offers a flexible multi-threaded daemon, efficient command-line tools, and automated signature updates, establishing itself as the de facto standard for secure email and network infrastructure.

Open-source Antivirus Engine
Email Gateway Scanning
Web Server Protection
Zeek Agent
Free

Zeek Agent View Zeek Agent

AhnLab PLUS is a unified security platform providing comprehensive cybersecurity solutions for businesses.

YARA-Endpoint
Free

YARA-Endpoint View YARA-Endpoint

The official security guide for Red Hat Enterprise Linux 7, providing detailed information on securing the operating system.