Re: Snort inline and iptablesy
From: Michal Melewski (mike_at_pn66.poznan.sdi.tpnet.pl)
Date: 08/23/05
- Previous message: lennu_at_codename.fi: "Re: Snort inline and iptablesy"
- In reply to: lennu_at_codename.fi: "Re: Snort inline and iptablesy"
- Next in thread: Soi, Dhruv: "RE: Snort inline and iptables"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: lennu@codename.fi Date: Tue, 23 Aug 2005 21:51:28 +0200
Dnia 23-08-2005, wto o godzinie 11:07 +0300, lennu@codename.fi napisał
(a):
> I have lots of computer is there any solutions to do centralized snort / iptables inline with easy way ? Any projects what I should take look ?
>
For sure you should take a closer look at BASE
(http://sourceforge.net/projects/secureideas/)
and Sguil (http://sguil.sourceforge.net/ ).
(i assume you mean centralized monitoring).
-- Michael "carstein" Melewski | "We have no future bacause our present carstein()7thguard.net | is too volatile. We have only risk mobile: 502 545 913 | management. The spinning of the given JID: carstein()gentoo.pl | moment's scenarios. Pattern recognition. ------------------------------------------------------------------------ Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more. ------------------------------------------------------------------------
- Previous message: lennu_at_codename.fi: "Re: Snort inline and iptablesy"
- In reply to: lennu_at_codename.fi: "Re: Snort inline and iptablesy"
- Next in thread: Soi, Dhruv: "RE: Snort inline and iptables"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]