Snort mailing list archives

"Best of breed" tools for Snort


From: "Tristan RHODES" <TristanRhodes () weber edu>
Date: Fri, 22 Apr 2005 09:56:58 -0600

1.  I would like to implement several (around 8) Snort sensors in our
network.

2.  I would like the rulesets/signatures to be updated automatically
(or with a simple manual process).
IDS Policy Manager
Oinkmaster
SnortCenter2 (What does this do?  I cannot find good documentation on
it.)
Others?

3.  I would like tools to analyze the data and send alerts.  
Base 
SecureMine for Snort  (I wish it was not Windows based)
(Can both of these tools be used on the same data?)

4.  What data architecture is best?  For instance, would it be best to
have a central database server?  Briefly explain the data flows.

5.  What are the best tools for each of these processes?  Any other
recommendations?

6.  Finally, it would be useful if the snort.org website was updated to
include this kind of information.  There is some mention of Snort tools
in the download section, but it is outdated and doesn't include a
synopsis of what each tool does.  Recent information can only be found
by searching the news.

Thanks!

Tristan Rhodes


-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: