Snort mailing list archives

Best snort analyzing tool


From: "Mam Ruoc" <mamruoc () hotmail com>
Date: Tue, 11 Feb 2003 08:07:57 +0100

Greetings!

Currently I'm using ACID to analyze my snort logs using MySQL, but I've seen a smoothwall box with IDS which has a quite good log analyzer...

I find ACID a bit hard to read, especially when the computer gets portscanned by one host (same type), it may report (or snort does) many events, isn't a way to group them by IP????

So I wonder which snort analyzer tool is best? For presenting via web... And easy reading/grouping

Thanks in advanced...

_________________________________________________________________
MSN Messenger http://www.msn.no/messenger - Den korteste veien mellom deg og dine venner



-------------------------------------------------------
This SF.NET email is sponsored by:
SourceForge Enterprise Edition + IBM + LinuxWorld = Something 2 See!
http://www.vasoftware.com
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: