Snort mailing list archives

Re: BASE or Snort Report ???


From: Paul Halliday <paul.halliday () gmail com>
Date: Tue, 4 Jan 2011 20:26:41 -0400

On Tue, Jan 4, 2011 at 2:51 PM, J. L. Cabral <jelocabral () gmail com> wrote:
Hi all, I need a starting point to enter to Snort world, so I think I
can use BASE or Snort Report to view the traffic logs.

I've used BASE but I'm still fighting with sending alerts by email, I
can setup this feature. And also I've seen some snapshots from Snort
Report.

What web interface do you recommend to me in order to view and receive
critical Snort's alerts by mail ???


Sguil has email functionality and is one of the better (and only real
time?) analyst consoles. Plus, it has an excellent web front end
available as well ;P

-- 
Paul Halliday
http://www.pintumbler.org

------------------------------------------------------------------------------
Learn how Oracle Real Application Clusters (RAC) One Node allows customers
to consolidate database storage, standardize their database environment, and, 
should the need arise, upgrade to a full multi-node Oracle RAC database 
without downtime or disruption
http://p.sf.net/sfu/oracle-sfdevnl
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: