Re: SNORT + Win32

From: Yoanne LE MERCIER (ylemercier.security_at_gmail.com)
Date: 05/01/05

  • Next message: Kevin Johnson: "BASE development list public"
    Date: Sun, 1 May 2005 19:18:21 +0200
    To: focus-ids@securityfocus.com
    
    

    Hi.

    Take a look at the download/contrib/data_analysis section of Snort
    official homepage.
    (http://www.snort.org/dl/contrib/data_analysis/)
    The most famous reporting tools are ACID and SnortSnarf.

    Hope it helps.

    On 4/29/05, just1coder <just1coder@yahoo.ca> wrote:
    > Hi, I'm using SNORT and Win32 - so far so good. Are there any tools
    > available commercial or otherwise for monitoring the logs and building
    > reports?
    >
    > Thanks
    >
    > --------------------------------------------------------------------------
    > Stop hurting your network!
    >
    > The NeVO passive vulnerability sensor continuously finds vulnerabilities,
    > applications and new hosts without the need for network scanning.
    > It also finds compromised systems with application-based intrusion detection.
    > Go to http://www.tenablesecurity.com/products/nevo.shtml to learn more.
    > --------------------------------------------------------------------------
    >
    >

    --------------------------------------------------------------------------
    Test Your IDS

    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from
    CORE IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
    to learn more.
    --------------------------------------------------------------------------


  • Next message: Kevin Johnson: "BASE development list public"