[Snort-users] AW: (Snort-users) Log analysis tools

sandro.poppi at ...3316... sandro.poppi at ...3316...
Thu Sep 6 06:36:04 EDT 2001


Try ACID. It's not that simple to install because of various support packages
needed and it's database related, but you get all alerts when they happen
/nearly realtime) and it can be queried via a browser.

ACID can be found on http://www.cert.org/kb/acid/

HTH

Sandro


> -----Ursprüngliche Nachricht-----
> Von: Subba Rao <subba9 at ...530...> at Internet
> Gesendet: Donnerstag, 6. September 2001 09:24
> An: Snort Users <snort-users at lists.sourceforge.net> at Internet
> Betreff: [Snort-users] Log analysis tools
>
>
> I have used SnortSnarf on the Snort logs. While the html
> pages output is
> impressive, the performance is miserable. The main issue in
> our setup is memory.
> SnortSnarf on a system with 64 MB RAM and 300 MB swap space
> does not work on
> 2+ MB of logs.
>
> Are there any other tools that can analyze and generate html
> based reports? The
> folks who would access these pages would do it once a day.
>
> Thanks for any info or pointers.
> --
>
> Subba Rao
> subba9 at ...530...
> http://members.home.net/subba9/
>
> GPG public key ID CCB7344E
> Key fingerprint = A8DD 4CBA 1E9B D962 A55B  2B55 BAFE 92C5 CCB7 344E
>
> _______________________________________________
> Snort-users mailing list
> Snort-users at lists.sourceforge.net
> Go to this URL to change user options or unsubscribe:
> https://lists.sourceforge.net/lists/listinfo/snort-users
> Snort-users list archive:
> http://www.geocrawler.com/redir-sf.php3?list=snort-users
>
>





More information about the Snort-users mailing list