Re: IDS

From: Gustavo A. Baratto (gbaratto_at_superb.net)
Date: 04/20/04

  • Next message: marty_at_mss.tzo.com: "Re: NetCache equivalents"
    To: <freebsd-isp@freebsd.org>
    Date: Tue, 20 Apr 2004 12:41:44 -0700
    
    

    wow...

    I didn't know snort did file system checking as well.

    I will definetely check that out!

    thanks
    ----- Original Message -----
    From: "Colin Alston" <karnaugh@karnaugh.za.net>
    To: "Gustavo A. Baratto" <gbaratto@superb.net>
    Cc: <freebsd-isp@freebsd.org>
    Sent: Tuesday, April 20, 2004 12:25 PM
    Subject: Re: IDS

    > Gustavo A. Baratto wrote:
    >
    > > Hi everyone...
    > >
    > > We have couple of dozen boxes running freebsd 5.X, but tripwire from
    ports doesn't compile in 5.X
    > >
    > > I wonder what IDS programs people are using these days... Any feedback
    is really appreciated.
    > >
    > > thanks :)
    >
    > Snort works wonderfully for me.
    >
    > --
    > Colin Alston <karnaugh@karnaugh.za.net>
    >
    > Quantum Logic Chicken:
    > The chicken is distributed probabalistically on all sides of the
    > road until you observe it on the side of your course.
    >

    _______________________________________________
    freebsd-isp@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-isp
    To unsubscribe, send any mail to "freebsd-isp-unsubscribe@freebsd.org"


  • Next message: marty_at_mss.tzo.com: "Re: NetCache equivalents"

    Relevant Pages

    • Ping of Death seg faulting Snort?
      ... Ping of Death seg faulting Snort? ... I just started playing around with Snort a few days ago... ... I had just compiled it on my laptop running Slackware 7.1. ... I just compiled snort and started snort right after that compile ...
      (Security-Basics)
    • Re: Ping of Death seg faulting Snort?
      ... Ping of Death seg faulting Snort? ... I'm tried with Snort 1.8.1 on Debian Linux... ... I just compiled snort and started snort right after that compile ...
      (Security-Basics)
    • Re: snort on AIX
      ... Please deatil your problem along with the version and error messages. ... > has anyone experience in setting up snort under AIX? ... snort did not compile and aborted with a lot ...
      (Security-Basics)
    • Re: Value of "richer" signatures?
      ... Snort, Dragon, and NFR, and I can tell you that they ... Here's an example of how the newer IDS signatures help ... Let's say you are using a simple packet grepping IDS ... > an FTP connection). ...
      (Focus-IDS)
    • Re: ids inquisition
      ... Subject: ids inquisition ... Snort isn't one of them. ... Brian Caswell - CSV output plugin, ... Christian Lademann - active response, ...
      (Focus-IDS)