Re: Snort console recommendation

From: Martin Roesch (roesch_at_sourcefire.com)
Date: 07/08/03

  • Next message: Jason V. Miller: "Administrivia"
    Date: Tue, 8 Jul 2003 12:38:25 -0400
    To: "Marcelo Olguin" <molguin@novared.cl>
    
    

    Hi Marcelo,

    It's not strictly a console, but Sourcefire (http://www.sourcefire.com)
    makes commercial appliance-based IDS infrastructure with a centralized
    management appliance as well, complete with a web-based management and
    data analysis GUI. It costs money but we feel it's the best
    Snort-centric management capability out there from both a performance
    and capability standpoint, plus Sourcefire was built by many of the
    people who built Snort (like me).

         -Marty

    On Friday, July 4, 2003, at 05:59 PM, Marcelo Olguin wrote:

    >
    > Hello all
    > I need advice about experiences with snort console's (opensource and
    > commercial), like snortcenter and puresecure. What has been the
    > experience with these? What others can you recommend?
    >
    > regards
    >
    >
    > --
    > Marcelo Olguín Mena
    >
    > -
    > GPG key ID 1024D/67AA1AFF 2003-06-18 Marcelo Olguin
    > <molguin@novared.cl>
    > Key fingerprint = 5733 7B79 338E A44C FA91 B6B7 1B1D 9914 67AA 1AFF
    >
    >
    >
    > -----------------------------------------------------------------------
    > --------
    > The Lightning Console aggregates IDS events, correlates them with
    > vulnerability info, reduces false positives with the click of a
    > button, and distributes this information to hundreds of users.
    > Visit Tenable Network Security at http://www.tenablesecurity.com to
    > learn more.
    > -----------------------------------------------------------------------
    > --------
    >
    >

    -- 
    Martin Roesch - Founder/CTO Sourcefire Inc. - (410) 290-1616
    Sourcefire: Enterprise-class Intrusion detection built on Snort
    roesch@sourcefire.com - http://www.sourcefire.com
    Snort: Open Source Network IDS - http://www.snort.org
    -------------------------------------------------------------------------------
    The Lightning Console aggregates IDS events, correlates them with vulnerability 
    info, reduces false positives with the click of a button, and distributes this 
    information to hundreds of users. 
    Visit Tenable Network Security at http://www.tenablesecurity.com to learn more.
    -------------------------------------------------------------------------------
    

  • Next message: Jason V. Miller: "Administrivia"