Snort mailing list archives

RE: Leasing snort system


From: Jim Clews <jclews () climaxgroup com>
Date: Tue, 20 Apr 2004 11:51:54 +0100

If you want to go down the WIN32 route, you could use EagleX which is
snort/acid/php/apache/mysql package with a single installer (and is free) It
takes about 10 minutes to install and configure.

For quick snort fixes it couldn't be easier...

http://www.engagesecurity.com/products/eaglex/

I'd like to know the opinion of the hardcore snort heads about this package,
as it doesn't get mentioned much (except by me!)

Cheers,

Jim


-----Original Message-----
From: Keith Loyd [mailto:Keith () Loyd com] 
Sent: 20 April 2004 10:27
To: snort-users () lists sourceforge net
Cc: m.guerendo () comcast net
Subject: RE: [Snort-users] Leasing snort system



Mario,

Knoppix-STD v 0.1 has Snort 2.10 installed but I think you would have
trouble running it for 5 days if you are going to send a lot of traffic to
it.  You could try installing Knoppix to hard disk and would probably have
better results.

Another option is to try Patrick Harper's new installation document that
uses more RPM's and looks much easier to install.

http://www.internetsecurityguru.com/documents/Snort_SSL_Acid_FC1_From_RPM.pd
f

Regards,
Keith Loyd, CISSP, MCSE


-----Original Message-----
From: snort-users-admin () lists sourceforge net
[mailto:snort-users-admin () lists sourceforge net] On Behalf Of James Riden
Sent: Monday, April 19, 2004 5:57 PM
To: snort-users () lists sourceforge net
Subject: Re: [Snort-users] Leasing snort system

"Mario Guerendo" <m.guerendo () comcast net> writes:

   Hi Everyone,


   I was just thinking, and was wondering if I could lease a working
   snort system for approximately 5 days.  Just so I can collect data
   like DoS (i.e. ping attacks).  I will actually generate those attacks
   myself and record the response on snort.  I tried to configure snort
   on my system but was never successful, I am running out of time.

   Would anyone have such a system?  Basically configured to collect
   intrusions (DoS preferably).  I just want to be able to send echos to
   the system so I can collect them.  Thx.

If you can't find a pre-setup snort box for lease - Knoppix-STD is a Linux
distribution that boots of CD and has snort on I think. Then you'd just need
to find some generic leased equipment which should be a little bit easier to
get hold of.

cheers,
 Jamie
-- 
James Riden / j.riden () massey ac nz / Systems Security Engineer Information
Technology Services, Massey University, NZ. GPG public key available at:
http://www.massey.ac.nz/~jriden/



-------------------------------------------------------
This SF.Net email is sponsored by: IBM Linux Tutorials
Free Linux tutorial presented by Daniel Robbins, President and CEO of GenToo
technologies. Learn everything from fundamentals to system
administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users



-------------------------------------------------------
This SF.Net email is sponsored by: IBM Linux Tutorials
Free Linux tutorial presented by Daniel Robbins, President and CEO of GenToo
technologies. Learn everything from fundamentals to system
administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


-------------------------------------------------------
This SF.Net email is sponsored by: IBM Linux Tutorials
Free Linux tutorial presented by Daniel Robbins, President and CEO of
GenToo technologies. Learn everything from fundamentals to system
administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: