Anyone give me any info on Snort??

General Network security, firewalls, port filtering/forwarding, wireless security, anti-spyware, as well as spam control and privacy discussions.
Post Reply
User avatar
caveman
Advanced Member
Posts: 751
Joined: Mon Nov 26, 2001 4:44 pm
Location: Liverpool, UK

Anyone give me any info on Snort??

Post by caveman »

What is it?
What does it do?
How does it work?

And how in gods name do I get it to run in IPCop??

There really doesn`t seem to be any dummies guides to it (hence why i`m struggling) and I`m stuck good and proper!

I found some thing about "editing the url" to include the "oink code" and the filename but I`m really in over my head....

In fact is it even of any use to me??

Thanx again in advance!

Al
Image
FOLD ON!!
User avatar
YeOldeStonecat
SG VIP
Posts: 51171
Joined: Mon Jan 15, 2001 12:00 pm
Location: Somewhere along the shoreline in New England

Post by YeOldeStonecat »

http://www.snort.org/

http://www.snort.org/about_snort/

I forget how it ran on IPCop...guessing it was part of the Copfilter add-on? It's built into Endian....I did the free registration..you get your "oink" code..lol..and enter it..it will download the definitions.
MORNING WOOD Lumber Company
Guinness for Strength!!!
User avatar
caveman
Advanced Member
Posts: 751
Joined: Mon Nov 26, 2001 4:44 pm
Location: Liverpool, UK

Post by caveman »

Ah right.... well there`s definitely something to do with Snort in IPCop....Under the services tab there`s Intrusion Detection at the bottom and you can enable or disable on red and green (And I assume any other interfaces you may have configured).

I`ve set it to red and green and at thre bottom of the tab, near the field with my oink code, there are 2 buttons, "Download new ruleset" and "force update" and just next to those it says "Rules already up to date".

Also under the System status tab it says "Running" for intrusion detection (red) and (Green).

I therefore conclude that it is indeed running on my IPCop :D

It was a lot easier that some of the reading up led me to believe!!

Ah well, thanx again.
Image
FOLD ON!!
Post Reply