Snort mailing list archives

ACID alternatives


From: "Jeff Schmidt (CACL Tech Asst)" <schmidje () oplin org>
Date: Thu, 12 Aug 2004 15:28:25 -0400

Sorry if this is a FAQ, but, can anyone suggest alternatives to ACID for analysis of SNORT data? I have a couple problems with ACID. The first being scalability. In our deployement of SNORT we seem to pick up 10k-20k alerts per week. ACID absolutely *crawls* when working on such a dataset. Granted, we've got it running on an old low-end box, so I recognize that is certainly part of the problem, but ACID just doesn't seem to cut it. Also, it appears that ACID is dead. It never reached 1.0 status, and in fact the last release of ACID was almost 2 years ago.

So, are there any active, open-source projects that are developing something similar to ACID but that might, perhaps be a better alternative to ACID?

Jeff Schmidt





-------------------------------------------------------
SF.Net email is sponsored by Shop4tech.com-Lowest price on Blank Media
100pk Sonic DVD-R 4x for only $29 -100pk Sonic DVD+R for only $33
Save 50% off Retail on Ink & Toner - Free Shipping and Free Gift.
http://www.shop4tech.com/z/Inkjet_Cartridges/9_108_r285
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: