[Snort-users] Snort Anomaly

Mr Smith engineer.demo2020 at ...11827...
Tue Jan 7 13:38:21 EST 2014


Hi
I Have a question about Snort:
What is the best solution to improve Snort performance in terms of "Anomaly
Detection" Capability?
What is the best solution to add "Anomaly Detection" capability into Snort?
1. Using a Host-Based IDS(like what?) in conjunction with Snort(NIDS)?
2. Adding anomaly based plugins(like what) into Snort?
3....?

Thanks
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20140107/0f04f317/attachment.html>


More information about the Snort-users mailing list