Snort mailing list archives

RE: Snort frontends?


From: Paul Schmehl <pauls () utdallas edu>
Date: 19 Mar 2003 17:08:03 -0600

On Wed, 2003-03-19 at 16:40, Gordon Cunningham wrote:
How about using the log as well as MySQL and tail -f the log file in a
terminal window?  About as real-time as you can get.

Yeahbut.....we're looking for something that will present *summarized
and collated* realtime data in a GUI interface (HTTP is fine) for
viewing by several people (for example, Cisco's IDS only allows one of
us to view it at a time) *and* things like the ability to email or page
for specific alerts - without having to cobble together six different
pieces as presently seems to be the norm.

I'm a big fan of automating as much as possible so computers do the
grunt work and people can do the high level overview, decision-making
stuff.

I love my job, but I do sleep sometimes.  :-)

-- 
Paul Schmehl (pauls () utdallas edu)
Adjunct Information Security Officer
The University of Texas at Dallas
http://www.utdallas.edu/~pauls/
AVIEN Founding Member



-------------------------------------------------------
This SF.net email is sponsored by: Does your code think in ink? 
You could win a Tablet PC. Get a free Tablet PC hat just for playing. 
What are you waiting for?
http://ads.sourceforge.net/cgi-bin/redirect.pl?micr5043en
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: