Networking Forums

Networking Forums > Computer Networking > Linux Networking > Intrusion Detection using snort

Reply
Thread Tools Display Modes

Intrusion Detection using snort

 
 
Ivan
Guest
Posts: n/a

 
      11-22-2007, 10:08 PM
Hi all,

I have recently installed Snort, Base, MySQL, And Apache2 On Ubuntu
7.10, in hopes to detect potential intrusions in my network.

The problem is, I have it installed in my personal computer and I
would like to get a report of the complete network.
I was wondering if this was possible, and where the machine would have
to be in the network (ie, in relation to the firewall).

I have ntop working in my machine and it seems to be picking up
traffic from all of the internal network, so I thought snort would be
able to give me a similar result ..
 
Reply With Quote
 
 
 
 
pedro.forum@gmail.com
Guest
Posts: n/a

 
      11-23-2007, 11:27 AM
On Nov 22, 8:08 pm, Ivan <find.i...@gmail.com> wrote:
> Hi all,
>
> I have recently installed Snort, Base, MySQL, And Apache2 On Ubuntu
> 7.10, in hopes to detect potential intrusions in my network.
>
> The problem is, I have it installed in my personal computer and I
> would like to get a report of the complete network.
> I was wondering if this was possible, and where the machine would have
> to be in the network (ie, in relation to the firewall).
>
> I have ntop working in my machine and it seems to be picking up
> traffic from all of the internal network, so I thought snort would be
> able to give me a similar result ..


Hi Ivan,

I also have snort in my network. So, I placed snort in parallel with
my firewall inside my network. The problem is: how to have the traffic
going to the IDS sensors in switched network? The best approach is to
have a port mirroring capable switch. I don't know how Ntop works but,
if it work as snort, sniffing packet in the network he is into, sure
snort will do so.
 
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Intrusion Detection Strategies arigano.spagety@gmail.com Linux Networking 0 07-24-2008 02:03 PM
intrusion detection software E. Buzz Miller Wireless Internet 3 03-27-2005 02:13 PM
Intrusion detection suggestions Madhusudan Singh Linux Networking 2 08-13-2004 06:39 PM
AirSnare- For wireless intrusion detection Jim L Broadband Hardware 0 05-20-2004 05:52 PM
Intrusion Detection Systems Management Console Natanael Mignon Linux Networking 2 01-14-2004 07:13 PM



1 2 3 4 5 6 7 8 9 10 11