Snort mailing list archives

Re: Rules and sensor management


From: Paul Schmehl <pschmehl_lists () tx rr com>
Date: Tue, 09 Feb 2010 14:05:49 -0600

I will take the resounding thud in response to this question to mean that there 
are no other options out there.

--On Monday, February 08, 2010 15:00:21 -0600 Paul Schmehl 
<pschmehl_lists () tx rr com> wrote:

I'm looking for something that can manage rules and conf files on multiple
sensors.  I do *not* want something that automagically fetches the vrt rules
and uses oinkmaster to maintain the rules, because that's not what I'm doing
on  these particular sensors.

I looked at IDS Policy Manager, which looked promising (even though it's
written for Windows only), but the dang thing doesn't work.  I can't browse
to  my hard drive and load my existing rules, conf file and other files.

It doesn't have to be a dumbed down GUI.

Buehler????



-- 
Paul Schmehl, Senior Infosec Analyst
As if it wasn't already obvious, my opinions
are my own and not those of my employer.
*******************************************
"It is as useless to argue with those who have
renounced the use of reason as to administer
medication to the dead." Thomas Jefferson


------------------------------------------------------------------------------
SOLARIS 10 is the OS for Data Centers - provides features such as DTrace,
Predictive Self Healing and Award Winning ZFS. Get Solaris 10 NOW
http://p.sf.net/sfu/solaris-dev2dev
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: