Re: SNMP traps in Snort

From: Martin Roesch (roesch@sourcefire.com)
Date: 12/27/01


Date: Thu, 27 Dec 2001 11:21:46 -0500
From: Martin Roesch <roesch@sourcefire.com>
To: Daniel Adler <DanielA@ectel.com>, <focus-ids@securityfocus.com>

Snort's SNMP code relies on the UCD SNMP library, so if there's a port of it
to Windows (or if it works natively) then you should be able to compile up
Snort with SNMP support natively on win32. I haven't tried this.

     -Marty

On 12/26/01 11:25 AM, "Daniel Adler" <DanielA@ectel.com> wrote:

>
>
> Hello All,
>
> Does anyone know whether there is a Snort version
> for windows that supports event notification through
> SNMP traps?
>
> If you are familiar with other IDS freeware that
> supports this function I would appreciate it a lot.
>
> Thanks,
> Daniel Adler.
>

-- 
Martin Roesch - Founder/CEO Sourcefire Inc. - (410) 552-6999
Sourcefire: Professional Snort Sensor and Management Console appliances
roesch@sourcefire.com - http://www.sourcefire.com
Snort: Open Source Network IDS - http://www.snort.org



Relevant Pages

  • RE: SNMP traps in Snort
    ... There is a windows agent, version 4.1.2, available at ... at least let you build snort with --with-snmp. ... Subject: SNMP traps in Snort ... Snort: Open Source Network IDS - http://www.snort.org ...
    (Focus-IDS)
  • Re: Snort Monitoring
    ... can you use SNMP? ... I would think you are looking at monitoring of alerts and not the snort ... Subject: Snort Monitoring ... He makes progress only when he sticks his neck out. ...
    (Focus-IDS)
  • [NT] Unchecked Buffer in SNMP Service Could Enable Arbitrary Code Execution
    ... Simple Network Management Protocol is an Internet standard protocol ... All versions of Windows, except for Windows ME, provide an SNMP ... A patch is under development to eliminate the vulnerability. ...
    (Securiteam)
  • Windows NT4.0 SNMP subagent
    ... I have a problem when deploying a SNMP subagent on Windows ... I used Windows SNMP Extension API to ... dll are missing from path". ...
    (microsoft.public.win32.programmer.networks)
  • [NT] Microsoft Windows 2000 SNMP Memory Utilization DoS
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... If the SNMP service is running on a Windows 2000 server, ... repeatedly using SNMP queries to obtain ...
    (Securiteam)