Snort Alert Monitor 0.4.1 (Default branch)


 
Thread Tools Search this Thread
Special Forums News, Links, Events and Announcements Software Releases - RSS News Snort Alert Monitor 0.4.1 (Default branch)
# 1  
Old 11-26-2008
Snort Alert Monitor 0.4.1 (Default branch)

ImageSAM is a real-time Snort alert monitor. It provides many ways to indicate that you may be experiencing an intrusion attempt on your network, including audio/visual warnings, email warnings, etc. License: MIT/X Consortium LicenseChanges:
The events page didn't understand the minutes_ago param, so clicking a link from the dashboard would force the events page to run through the full database instead of that timeframe. Also, the Threat Index didn't include high and medium severities in the same calculation, so you might see the same IP twice, and not the aggregate as you should have. These issues have been fixed.Image

Image

More...
Login or Register to Ask a Question

Previous Thread | Next Thread

2 More Discussions You Might Find Interesting

1. Shell Programming and Scripting

File monitor and alert

whats is the best way to monitor file if it has not updated in last 24 hours. example /var/logmessages in linux , /var/adm/messaged in solaris and alert to email . find with mtime , perl file stat, anyone have any script examples of something better ? (3 Replies)
Discussion started by: nixguynj
3 Replies

2. Shell Programming and Scripting

script to monitor files in a directory and sending the alert

Hi All, We are having important config files in an directory which was accessable by all /auto/config/Testbed/>ls config1.intial config2.intial config3.inital often we find that some of the lines are missing in config files, we doubt if some one is removing. I would like to write... (0 Replies)
Discussion started by: shellscripter
0 Replies
Login or Register to Ask a Question
SNORT2DLF.IN(1) 					  LogReport's Lire Documentation					   SNORT2DLF.IN(1)

NAME
snort2dlf - convert Snort logs to firewall DLF SYNOPSIS
snort2dlf DESCRIPTION
snort2dlf converts Snort logs into firewall DLF format. Input for this converter is the standard snort logfile. EXAMPLES
To process a log as produced by snort: $ snort2dlf < snort.log snort2dlf will be rarely used on its own, but is more likely called by lr_log2report: $ lr_log2report snort < snort.log SEE ALSO
The Snort project website at http://www.snort.org/ . AUTHOR
Torsten Fellhauer <torsten@fellhauer-web.de> . Code based upon ipchains2dlf code by Francis J. Lacoste. VERSION
$Id: snort2dlf.in,v 1.7 2006/07/23 13:16:35 vanbaal Exp $ COPYRIGHT
Copyright (C) 2003 Torsten Fellhauer This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2 of the License, or (at your option) any later version. This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. You should have received a copy of the GNU General Public License along with this program (see COPYING); if not, check with http://www.gnu.org/copyleft/gpl.html. Lire 2.1.1 2006-07-23 SNORT2DLF.IN(1)