Re: SNORT + Win32

From: Martin Roesch (roesch_at_sourcefire.com)
Date: 05/03/05

  • Next message: Jason Patel: "Value of IDS, ROI"
    Date: Mon, 2 May 2005 22:08:26 -0400
    To: "Harper, Patrick" <Patrick.Harper@phns.com>
    
    

    I second that, if you're going to use web-based analysis tools please
    don't use ACID any more, BASE is under active development and is a fork
    from the original ACID codebase. It appears that ACID is not under
    active development any longer...

          -Marty

    On May 2, 2005, at 9:04 AM, Harper, Patrick wrote:

    > For monitoring I use BASE http://secureideas.sourceforge.net/ it is
    > based on the ACID code but is so much nice and faster
    >
    >
    >
    > -----Original Message-----
    > From: just1coder [mailto:just1coder@yahoo.ca]
    > Sent: Friday, April 29, 2005 10:17 AM
    > To: focus-ids@securityfocus.com
    > Subject: SNORT + Win32
    >
    > Hi, I'm using SNORT and Win32 - so far so good. Are there any tools
    > available commercial or otherwise for monitoring the logs and building
    > reports?
    >
    > Thanks
    >
    > -----------------------------------------------------------------------
    > -
    > --
    > Stop hurting your network!
    >
    > The NeVO passive vulnerability sensor continuously finds
    > vulnerabilities,
    > applications and new hosts without the need for network scanning.
    > It also finds compromised systems with application-based intrusion
    > detection.
    > Go to http://www.tenablesecurity.com/products/nevo.shtml to learn more.
    > -----------------------------------------------------------------------
    > -
    > --
    >
    >
    >
    >
    > -----------------------------------------
    > Disclaimer: This electronic message, including any attachments, is
    > confidential and intended solely for use of the intended recipient(s).
    > This
    > message may contain information that is privileged or otherwise
    > protected
    > from disclosure by applicable law. Any unauthorized disclosure,
    > dissemination, use or reproduction is strictly prohibited. If you have
    > received this message in error, please delete it and notify the sender
    > immediately.
    >
    >
    > -----------------------------------------------------------------------
    > ---
    > Test Your IDS
    >
    > Is your IDS deployed correctly?
    > Find out quickly and easily by testing it with real-world attacks from
    > CORE IMPACT.
    > Go to
    > http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
    > to learn more.
    > -----------------------------------------------------------------------
    > ---
    >
    >

    -- 
    Martin Roesch - Founder/CTO, Sourcefire Inc. - +1-410-290-1616
    Sourcefire - Discover.  Determine.  Defend. - http://www.sourcefire.com
    Snort: Open Source Intrusion Detection and Prevention -  
    http://www.snort.org
    --------------------------------------------------------------------------
    Test Your IDS
    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from 
    CORE IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 
    to learn more.
    --------------------------------------------------------------------------
    

  • Next message: Jason Patel: "Value of IDS, ROI"

    Relevant Pages

    • Re: Open source GUI for Snort
      ... ACID and it is recommended, if you are going to use the Web based ... > Information Security - Senior Information Security Analyst ... > with real-world attacks from CORE IMPACT. ...
      (Focus-IDS)
    • Re: Open source GUI for Snort
      ... >>interface of ACID, to go ahead and upgrade to BASE. ... >>Joel Esler ... > with real-world attacks from CORE IMPACT. ...
      (Focus-IDS)
    • Re: Open source GUI for Snort
      ... Joel Esler wrote: ... >interface of ACID, to go ahead and upgrade to BASE. ... >with real-world attacks from CORE IMPACT. ...
      (Focus-IDS)