Re: Snort Monitoring

From: Todd Holloway (todd@duckland.org)
Date: 10/28/02


Date: Mon, 28 Oct 2002 12:09:34 -0600
From: Todd Holloway <todd@duckland.org>
To: "Scott M. Algatt" <salgatt@turtleshell.net>

you could use: the "check_command w/ ssh_proc" feature of Nagios
http://www.nagios.org/

it will tell you if snort (or any process or multiple processes is/are running or not)

todd

On Mon, Oct 28, 2002 at 08:47:00AM -0500, Scott M. Algatt wrote:
> All,
>
> I am looking for something that will provide monitoring of snort for me.
> I have several remote installs of Snort 1.9 and need to find a way to
> monitor them to make sure they are operational.
>
>
> Regards,
>
> Scott M. Algatt
>
> Behold the turtle. He makes progress only when he sticks his neck out.

-- 
[It] contains "vegetable stabilizer" which sounds ominous.  How unstable are vegetables?
								Jeff Zahn



Relevant Pages

  • RE: SNORT + Win32
    ... For monitoring I use BASE http://secureideas.sourceforge.net/ it is based on the ACID code but is so much nice and faster ... I'm using SNORT and Win32 - so far so good. ... Any unauthorized disclosure, dissemination, use or reproduction is strictly prohibited. ...
    (Focus-IDS)
  • Re: Info HIDS
    ... Snort will provide the kind of monitoring you are asking about. ... be configured to monitor an entire network, and output logs in tcp dump, ... >configure an HIDS (tripwire) to get intrusion's information about a Web ...
    (Security-Basics)
  • Re: Network Traffic Analyzer Recommendations?
    ... Also available for use with snort are various plugins which enable you ... If you're just after a basic bandwidth monitoring tool, ... worse than using the built-in Windows performance monitoring tools - ...
    (microsoft.public.windows.server.networking)
  • RE: Snort Monitoring
    ... is very easily to use and there are numerous walkthroughs / howtos available ... > I am looking for something that will provide monitoring of snort for me. ...
    (Focus-IDS)
  • Re: Snort Monitoring
    ... can you use SNMP? ... I would think you are looking at monitoring of alerts and not the snort ... Subject: Snort Monitoring ... He makes progress only when he sticks his neck out. ...
    (Focus-IDS)