|
About:
Snort is a lightweight network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks. It can perform protocol analysis, content searching/matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more. Snort uses a flexible rule based language to describe traffic that it should collect or pass, and a modular detection engine. Snort has a real-time alerting capability, with alert mechanisms for syslog, a user specified file, a UNIX socket, or WinPopup messages to Windows clients using Samba's smbclient.
Author:
Martin Roesch [contact developer]
Homepage:
http://www.snort.org
Changelog:
http://www.snort.org/docs/change_logs/2.4.0/ChangeLog
Purchase:
http://www.sourcefire.com/
CVS tree (cvsweb):
http://snort.cvs.sourceforge.net/snort/
Trove categories:
[change]
Dependencies:
[change]
No dependencies filed
|
|
» Rating:
8.51/10.00
(Rank 279)
» Vitality: 0.03% (Rank 3432)
» Popularity: 13.73% (Rank 111)

(click to enlarge graphs)
Record hits: 93,851
URL hits: 86,796
Subscribers: 392
|
|