Snort mailing list archives
Best snort analyzing tool
From: "Mam Ruoc" <mamruoc () hotmail com>
Date: Tue, 11 Feb 2003 08:07:57 +0100
Greetings!Currently I'm using ACID to analyze my snort logs using MySQL, but I've seen a smoothwall box with IDS which has a quite good log analyzer...
I find ACID a bit hard to read, especially when the computer gets portscanned by one host (same type), it may report (or snort does) many events, isn't a way to group them by IP????
So I wonder which snort analyzer tool is best? For presenting via web... And easy reading/grouping
Thanks in advanced... _________________________________________________________________MSN Messenger http://www.msn.no/messenger - Den korteste veien mellom deg og dine venner
------------------------------------------------------- This SF.NET email is sponsored by: SourceForge Enterprise Edition + IBM + LinuxWorld = Something 2 See! http://www.vasoftware.com _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Best snort analyzing tool Mam Ruoc (Feb 10)
- <Possible follow-ups>
- RE: Best snort analyzing tool Robert Reid (Feb 11)
