[Snort-users] Basic questions about snort

James Stanger jstanger at ...1720...
Sun Apr 15 00:12:00 EDT 2001

Other than the stuff at www.snort.org and the fast options available in
Snort, I don't know of anything written about deploying Snort in an
enterprise. I would love to see anything you write up.


Dr. James Stanger
Department of Research and Development
Web: http://www.ciwcertified.com

agetchel at ...1525... wrote:
> > Has anyone deployed snort in an enterprise class network?  If
> > so, where did
> > you go to help you get things working?  I am looking to roll
> > snort out and I
> > don't want to reinvent the wheel.  If there isn't one, I will
> > document my
> > experience.
>         We're getting ready to roll out snort on our network, which is
> 'pretty big'. =)  Unfortunately, I have not yet documented anything that I
> can release to the world without releasing 'too much' information about our
> internal network.  However, I'm going to be writing a document explaining
> our findings about Snort vs Other IDS's.  I'll send a message to the list
> with a link to the doc when it's done.  In the mean time, do you have any
> specific questions?
> Thanks,
> Abe
> Abe L. Getchell - Security Engineer
> Division of System Support Services
> Kentucky Department of Education
> Voice   502-564-2020x225
> E-mail  agetchel at ...1525...
> Web     http://www.kde.state.ky.us/
> _______________________________________________
> Snort-users mailing list
> Snort-users at lists.sourceforge.net
> Go to this URL to change user options or unsubscribe:
> http://lists.sourceforge.net/lists/listinfo/snort-users
> Snort-users list archive:
> http://www.geocrawler.com/redir-sf.php3?list=snort-users

More information about the Snort-users mailing list