Re: Need firewall (preferably Linux) with IDS with notification

From: Jon Skelley (regnus@email.com)
Date: 05/09/02


From: "Jon Skelley" <regnus@email.com>
Date: Thu, 9 May 2002 07:19:25 -0400

Thanks. By regular Linux box I meant I would install Linux of some flavor
and then install Snort. I used the term regular because I didnt have any
other way to describe it. I have since found Mandrake SNF and I agree with
you on it. Thanks.

"limeaid" <limeaid@nospam.rocketmail.com> wrote in message
news:Xns9205CD1743ED9limeaidnospamrocketm@204.127.68.17...
> I don't know what you mean by "requiring a regular Linux box".
> Please let me know.
>
> The Mandrake SNF download is the easiest install of them
> all. I think it only asked me two questions. Snort is
> installed with this. You might want to give it a chance.
> I run it on a headless p166 with 64megs o'ram and dual nics.
>
> http://www.mandrakesoft.com/products/snf/features
>
> Limeaid
>
>
> "Jon Skelley" <regnus@email.com> wrote in
> news:ab45ca$f6vfd$1@ID-60929.news.dfncis.de:
>
> > That would require a regular(for lack of a better word) linux box. I
> > want an out of the box (or download) solution where I dont have to
> > worry about knowing any Linux. That may end up being my solution in
> > the end, but I dont have time to put aside to mess with it. I want
> > something simple to install and configure that will email me when it
> > detects anything instead of having to check a log. I will keep Snort
> > in mind though if I move to a regular Linux box.
> >
> > "limeaid" <limeaid@nospam.rocketmail.com> wrote in message
> > news:Xns9203F256DF5CAlimeaidnospamrocketm@216.148.227.77...
> >> Have you considered snort?
> >>
> >> "Jon Skelley" <regnus@email.com> wrote in
> >> news:a9qjhg$5jsm9$1@ID-60929.news.dfncis.de:
> >>
> >> > Smoothwall has IDS that I have to lookat the log page. I want
> >> > something that has notification as well as IDS.
> >> >
> >> > "Garf" <garf@roadum.org.uk> wrote in message
> >> > news:l03q9a.tbn.ln@kevin.homenet.org...
> >> >> Jon Skelley wrote:
> >> >>
> >> >> > I am currently running smoothwall on an old 486 and it is
> >> >> > running great and
> >> >> > I like its IDS but there is no notification if intrusion/port
> >> >> > scans. Is there a firewall out there that is free and has
> >> >> > intrusion detection software that will notify me when it
> >> >> > registers an intrusion?
> >> >> >
> >> >> > Jon
> >> >>
> >> >> I would try ipcop rather than smoothwall http://www.ipcop.org
> >> >>
> >> >> It does have IDS, but you have to look at it's configuration web
> >> >> page to
> >> > see
> >> >> the IDS log, not a huge pain.
> >> >>
> >> >> --
> >> >> H&Ks
> >> >> Garf
> >> >
> >> >
> >> >
> >>
> >
> >
> >
>



Relevant Pages

  • Re: Need firewall (preferably Linux) with IDS with notification
    ... I don't know what you mean by "requiring a regular Linux box". ... The Mandrake SNF download is the easiest install of them ... I will keep Snort ...
    (comp.security.firewalls)
  • Re: Need firewall (preferably Linux) with IDS with notification
    ... > Ok I am currently configuring my Mandrake SNF install and I cannot ... By regular Linux box I meant I would install Linux of some ... >> flavor and then install Snort. ...
    (comp.security.firewalls)
  • Fwd: [Snort-users] Debian, Snort, Barnyard, BASE, & Oinkmaster Step-by-Step Guide
    ... so others can build their own IDS systems based on Debian. ... [Snort-users] Debian, Snort, Barnyard, BASE, & Oinkmaster Step-by-Step Guide ... Logging of Generator ID to MySQL database. ... Install Debian Testing and related software ...
    (Debian-User)
  • How to reinstall Snort
    ... I installed Snort 2.2.0 on my Fedora Core 2 system. ... unable to find mysql headers ... So I make, make check, make install. ... database: compiled support for ...
    (comp.os.linux.misc)
  • YaST - strange behaviour
    ... Since I installed snort the other day (I need it for a course I'm ... doing), every time I try to install something else with YaST, ... But why am I getting this error when I try to install packages that have ...
    (alt.os.linux.suse)