>>what is the best open sources IDS for *nix?
> That one with all the great features.

NIDS: snort
HIDS: tripwire

