Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Honeypots: Help with snort_inline

Help with snort_inline

From: Martin Kristensen <martink_at_student.hin.no>
Date: Thu, 7 Apr 2005 12:33:07 +0200

Hi everyone
I've read all the relevant documentation and I'm trying to deploy a honeynet.
But I am a little confused about datacontrol and snort_inline...

Here is what I have done:
- installed iptables with libipq
- configured the rc.firewall script
- installed Libpcap
- installed bridge_utils
- downloaded snort and snort_inline

But I'm a little confused with the GenII honeynet whitepaper and the tools
from the honeynet page. How do I actually install snort_inline?
There are two files from the tools-page: "snort_inline-2.2.0.tar" and
"Net-Snort-Parser-1.21.tar.gz"

but the whitepapers doesn't refer to the net-snort-parser, it refers to the
"snort_inline_toolkit" and it doesn't have a net-snort-parser in it..

Can anyone give me a top-down aproach on how to install and configure
snort_inline datacontrol?

Regards
Martin Kristensen
martink_at_student.hin.no
  
Received on Apr 07 2005

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]