[Snort-users] Analyzing Snort Alerts and EMailing

Weir, Jason jason.weir at ...14916...
Wed Sep 3 13:57:39 EDT 2014


From the article

“It hasn't been actively developed since about 2003”

It’s a little dated – but will do what you asked for..

-J

From: Matt M. [mailto:mr10001 at ...11827...]
Sent: Wednesday, September 03, 2014 1:47 PM
To: Weir, Jason
Cc: snort-users
Subject: Re: [Snort-users] Analyzing Snort Alerts and EMailing

Nice, thanks man, I just found this article...

http://blog.snort.org/2011/01/guis-for-snort.html

This was from 2011, hopefully it's not out of date... =/

On Wed, Sep 3, 2014 at 12:45 PM, Weir, Jason <jason.weir at ...14916...<mailto:jason.weir at ...14916...>> wrote:
Base (http://base.professionallyevil.com/) – Sure - it’s old, outdated and hasn’t been updated in quite a while but still works.

From: Matt M. [mailto:mr10001 at ...11827...<mailto:mr10001 at ...11827...>]
Sent: Wednesday, September 03, 2014 1:36 PM
To: snort-users
Subject: [Snort-users] Analyzing Snort Alerts and EMailing

Hello All,

I was wondering if anyone might be willing to recommend a good GUI tool for interacting with snort alerts and a process for having alerts automatically emailed?

At the moment I'm looking at ACID and I'm curious if this is my best bet.  I would prefer to use a database over a script.

I'm using OSX as well, so any tips would be greatly appreciated.

Thank you,
--
M., CISSP, GCFE, GCFA

“To disagree leads to study, to study leads to understanding, to understand is to appreciate, to appreciate is to love. So maybe I’ll end up loving your theory.” -John Wheeler



--
Matt M., CISSP, GCFE, GCFA

“To disagree leads to study, to study leads to understanding, to understand is to appreciate, to appreciate is to love. So maybe I’ll end up loving your theory.” -John Wheeler
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20140903/87bb41b1/attachment.html>


More information about the Snort-users mailing list