Snort mailing list archives

AW: (Snort-users) Log analysis tools


From: <sandro.poppi () wacker com>
Date: Thu, 06 Sep 2001 15:34:00 +0200


Try ACID. It's not that simple to install because of various support packages
needed and it's database related, but you get all alerts when they happen
/nearly realtime) and it can be queried via a browser.

ACID can be found on http://www.cert.org/kb/acid/

HTH

Sandro


-----Ursprüngliche Nachricht-----
Von: Subba Rao <subba9 () home com> at Internet
Gesendet: Donnerstag, 6. September 2001 09:24
An: Snort Users <snort-users () lists sourceforge net> at Internet
Betreff: [Snort-users] Log analysis tools


I have used SnortSnarf on the Snort logs. While the html
pages output is
impressive, the performance is miserable. The main issue in
our setup is memory.
SnortSnarf on a system with 64 MB RAM and 300 MB swap space
does not work on
2+ MB of logs.

Are there any other tools that can analyze and generate html
based reports? The
folks who would access these pages would do it once a day.

Thanks for any info or pointers.
--

Subba Rao
subba9 () home com
http://members.home.net/subba9/

GPG public key ID CCB7344E
Key fingerprint = A8DD 4CBA 1E9B D962 A55B  2B55 BAFE 92C5 CCB7 344E

_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users




_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: