[Snort-devel] Chinese version Installation guide for snort,mysql,acid and redhat8.0

Mike Cheng - BJ/TDC mike.cheng at ...1922...
Wed Apr 16 06:41:12 EDT 2003


Hi All,
I write a Chinese installation guide for installing snort,mysql and acid
in redhat8.0. It's  simple because it doesn't need user to compile the
source code.
Attached is the guide. Could you please put it in your web
site(www.snort.org/docs/#setup)?
I think it's useful to Chinese users.

thanks
Mike
-------------- next part --------------
	??redhat8.0??,Snort,mysql,acid????????
??????
	????????????????????????????????????????????????????snort,mysql,acid
????????????????????????????????????????????????????????install??????????
mysql??????????????????snort??????????????????????????????????????:
snort????????mysql,mysql????????????????????????????????????????????,
????????????????????????????????????
	????????????????????????mysql, apache, php, snort????????????????????
????redhat????????????mysql,apache????????????????????????snort rpm????acid????
??????OK????????????????????????????????????????????????
	????????????????????????????????????snort????????????????????????????????
								Mike Cheng

	
??. ????????
	Snort ?????????????? http://www.snort.org Version1.9.1
	MySQL ?????????????? http://www.mysql.org Version3.23.52
	Apache Web?????? http://www.apache.org 1.3.27
	ACID ????Web?????????????????????????? http://www.cert.org/kb/aircert 0.9.6b23
	PHP ACID?????????? http://www.php.net 4.0.6
	ADODB ??ACID???????????????????? http://php.weblogs.com/ADODB 3.40
	PHPlot ACID?????????????? http://www.phplot.com 4.4.6
	rpm?????????? http://www.rpmsearch.org

??????????????
    ??????redhat8.0????????????mysql, apache??????

1????????????????????MySQL
    redhat8.0????????????????mysql,??????????????????????????????????????????
mysql??rpm????
    ??????????????????/usr/bin/mysql_install_db??????????????; 
    $su root
    #/usr/bin/mysql_install_db
    ????????????????
    #/usr/bin/safe_mysqld -uroot 
    ??????????????????????
    #/usr/bin/mysqladmin -u root password 'abc123'

2??????Snort
    ??http://www.snort.org/dl/binaries/linux??????????snort-1.9.1-1snort.i386.rpm??snort-mysql-1.9.1-1snort.i386.rpm????
    #rpm -ivh snort-1.9.1-1snort.i386.rpm
    #rpm -ivh snort-mysql-1.9.1-1snort.i386.rpm

    ????????????????Snort??????????????????????????????MySQL????????
	(1)????Snort????????????????????????????
	#/usr/bin/mysqladmin -u root -p create snort
	#/usr/bin/mysqladmin -u root -p create snort_archive

	(2)????snort????????????,????Snort????????contrib????????create_mysql SQL??????????????????????
	#cd <PATH_TO_SNORT_SOURCECODE>/snort-1.9.1/contrib
	#/usr/bin/mysql -u root -D snort -p < create_mysql
	#/usr/bin/mysql -u root -D snort_archive -p < create_mysql

	(3)????/etc/snort/snort.conf????????Output Plugin ??????????????????
output database: alert, mysql, user=root password=abc123 dbname=snort host=localhost
    ????snort
    #snort -c /etc/snort/snort.conf

3????????????????ACID
    ????????????????????????3??????????adodb340.tar.gz??phplot-4.4.6.tar.gz
??acid-0.9.6b23.tar.gz????????????????????????????????3????????????????
??????Apache????????????????????/var/www/html??????
    ??????????????php-mysql-4.2.2-8.0.5.i386.rpm??????????????????php-mysql????
????????????????php??????????????????????????http://www.rpmsearch.org??????????
????
    ??????????????????????Acid-0.9.6b21??????????ACID??????????
Acid_conf.php??????????????????

	$Dblib_path="../adodb"
	$DBtype="mysql"

	$alert_dbname="snort"
	$alert_host="localhost"
	$alert_user="root"
	$alert_password="abc123"

	$archive_dbname="snort_archive"
	$archive_host="localhost"
	$archive_user="root"
	$archive_password="abc123"

	$ChartLib_path="../phplot-4.4.6"
	$Chart_file_format="png"
	$portscan_file="/var/log/snort/portscan.log"

    ????apache web??????
    #/usr/sbin/apachectl start

    ????????????????????????????????
    https://localhost/acid
    ??????????????????????????????????????????????????????????????????????????
??????????????????
    ??????????????????????????????????:)


More information about the Snort-devel mailing list