Novell Linux Desktop 9
package descriptions
snort
packet-sniffer/logger
|
Snort is a libpcap-based packet sniffer and logger which can be used as a lightweight network intrusion detection system. It features rules based logging and can perform protocol analysis, content searching and matching. It can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more. Snort has a real-time alerting capabilty, with alerts being sent to syslog, a separate "alert" file, or as a WinPopup message via Samba's smbclient. Additionally, the snort-log-analyzer "5n0r7" is included. |
| Version: | 2.1.1 |
|---|---|
| Release: | 37.7 |
| Medium: | DVD1 |
| Path: | /suse/i586/snort-2.1.1-37.7.i586.rpm |
| Group: | Productivity/Networking/Diagnostic |
| License: | GPL |
| Size: | 2.61 MB |
| Homepage: | http://www.snort.org/ |
File list
-rwxr-xr-x root root 4312 Oct 28 17:46 /etc/init.d/snort -rw-r--r-- root root 305 Oct 28 17:46 /etc/logrotate.d/snort -rwxr-xr-x root root 598 Oct 28 17:46 /etc/ppp/ip-up.d/snortstart drwxr-x--- root snort 1864 Oct 28 17:46 /etc/snort -rw-r----- root snort 4132 Oct 28 17:46 /etc/snort/attack-responses.rules -rw-r----- root snort 12580 Oct 28 17:46 /etc/snort/backdoor.rules -rw-r----- root snort 2971 Oct 28 17:46 /etc/snort/bad-traffic.rules -rw-r----- root snort 4460 Oct 28 17:46 /etc/snort/chat.rules -rw-r----- root snort 3521 Oct 28 17:46 /etc/snort/classification.config -rw-r----- root snort 6702 Oct 28 17:46 /etc/snort/ddos.rules -rw-r----- root snort 47409 Oct 28 17:46 /etc/snort/deleted.rules -rw-r----- root snort 4930 Oct 28 17:46 /etc/snort/dns.rules -rw-r----- root snort 4087 Oct 28 17:46 /etc/snort/dos.rules -rw-r----- root snort 472 Oct 28 17:46 /etc/snort/experimental.rules -rw-r----- root snort 12518 Oct 28 17:46 /etc/snort/exploit.rules -rw-r----- root snort 3179 Oct 28 17:46 /etc/snort/finger.rules -rw-r----- root snort 16774 Oct 28 17:46 /etc/snort/ftp.rules -rw-r----- root snort 6799 Oct 28 17:46 /etc/snort/gen-msg.map -rw-r----- root snort 16017 Oct 28 17:46 /etc/snort/icmp-info.rules -rw-r----- root snort 4624 Oct 28 17:46 /etc/snort/icmp.rules -rw-r----- root snort 5462 Oct 28 17:46 /etc/snort/imap.rules -rw-r----- root snort 1493 Oct 28 17:46 /etc/snort/info.rules -rw-r----- root snort 205 Oct 28 17:46 /etc/snort/local.rules -rw-r----- root snort 11697 Oct 28 17:46 /etc/snort/misc.rules -rw-r----- root snort 1686 Oct 28 17:46 /etc/snort/multimedia.rules -rw-r----- root snort 829 Oct 28 17:46 /etc/snort/mysql.rules -rw-r----- root snort 17729 Oct 28 17:46 /etc/snort/netbios.rules -rw-r----- root snort 838 Oct 28 17:46 /etc/snort/nntp.rules -rw-r----- root snort 6155 Oct 28 17:46 /etc/snort/oracle.rules -rw-r----- root snort 1401 Oct 28 17:46 /etc/snort/other-ids.rules -rw-r----- root snort 3501 Oct 28 17:46 /etc/snort/p2p.rules -rw-r----- root snort 5601 Oct 28 17:46 /etc/snort/policy.rules -rw-r----- root snort 1070 Oct 28 17:46 /etc/snort/pop2.rules -rw-r----- root snort 5148 Oct 28 17:46 /etc/snort/pop3.rules -rw-r----- root snort 5061 Oct 28 17:46 /etc/snort/porn.rules -rw-r----- root snort 608 Oct 28 17:46 /etc/snort/reference.config -rw-r----- root snort 51360 Oct 28 17:46 /etc/snort/rpc.rules -rw-r----- root snort 2877 Oct 28 17:46 /etc/snort/rservices.rules -rw-r----- root snort 4867 Oct 28 17:46 /etc/snort/scan.rules -rw-r----- root snort 4997 Oct 28 17:46 /etc/snort/shellcode.rules -rw-r----- root snort 140769 Oct 28 17:46 /etc/snort/sid-msg.map -rw-r----- root snort 13571 Oct 28 17:46 /etc/snort/smtp.rules -rw-r----- root snort 4073 Oct 28 17:46 /etc/snort/snmp.rules -rw-r----- root snort 22524 Oct 28 17:46 /etc/snort/snort.conf -rw-r----- root snort 12454 Oct 28 17:46 /etc/snort/sql.rules -rw-r----- root snort 3494 Oct 28 17:46 /etc/snort/telnet.rules -rw-r----- root snort 2665 Oct 28 17:46 /etc/snort/tftp.rules -rw-r----- root snort 2319 Oct 28 17:46 /etc/snort/threshold.conf -rw-r----- root snort 53841 Oct 28 17:46 /etc/snort/unicode.map -rw-r----- root snort 6106 Oct 28 17:46 /etc/snort/virus.rules -rw-r----- root snort 10366 Oct 28 17:46 /etc/snort/web-attacks.rules -rw-r----- root snort 92688 Oct 28 17:46 /etc/snort/web-cgi.rules -rw-r----- root snort 1753 Oct 28 17:46 /etc/snort/web-client.rules -rw-r----- root snort 8963 Oct 28 17:46 /etc/snort/web-coldfusion.rules -rw-r----- root snort 8447 Oct 28 17:46 /etc/snort/web-frontpage.rules -rw-r----- root snort 34913 Oct 28 17:46 /etc/snort/web-iis.rules -rw-r----- root snort 78006 Oct 28 17:46 /etc/snort/web-misc.rules -rw-r----- root snort 32106 Oct 28 17:46 /etc/snort/web-php.rules -rw-r----- root snort 578 Oct 28 17:46 /etc/snort/x11.rules -rwxr-xr-x root root 598 Oct 28 17:46 /etc/sysconfig/network/if-up.d/snortstart -rwxr-xr-x root root 618043 Oct 28 17:46 /usr/bin/snort lrwxrwxrwx root root 17 Oct 28 17:46 /usr/sbin/rcsnort -> /etc/init.d/snort -rwxr-xr-x root root 3325 Oct 28 17:46 /usr/sbin/snort-update drwxr-xr-x root root 1664 Oct 28 17:46 /usr/share/doc/packages/snort -rw-r--r-- root root 86037 Oct 28 17:46 /usr/share/doc/packages/snort/ACID-0.9.6b21.tar.bz2 -rw-r--r-- root root 58 Jul 10 2001 /usr/share/doc/packages/snort/AUTHORS -rw-r--r-- root root 1939 Nov 12 2003 /usr/share/doc/packages/snort/BUGS -rw-r--r-- root root 17989 Aug 7 2000 /usr/share/doc/packages/snort/COPYING -rw-r--r-- root root 9006 Nov 7 2003 /usr/share/doc/packages/snort/CREDITS -rw-r--r-- root root 129611 Feb 25 2004 /usr/share/doc/packages/snort/ChangeLog -rw-r--r-- root root 128532 Jan 20 2004 /usr/share/doc/packages/snort/FAQ -rw-r--r-- root root 4220 Oct 28 17:46 /usr/share/doc/packages/snort/Guardian.tar.bz2 -rw-r--r-- root root 13240 Dec 17 2003 /usr/share/doc/packages/snort/INSTALL -rw-r--r-- root root 17989 Dec 15 2001 /usr/share/doc/packages/snort/LICENSE -rw-r--r-- root root 29504 Apr 7 2003 /usr/share/doc/packages/snort/NEWS -rw-r--r-- root root 10018 Oct 28 17:46 /usr/share/doc/packages/snort/Net-SnortLog-0.1.tar.bz2 -rw-r--r-- root root 1220 Aug 16 2002 /usr/share/doc/packages/snort/PROBLEMS -rw-r--r-- root root 15511 Jan 20 2004 /usr/share/doc/packages/snort/README -rw-r--r-- root root 1641 Aug 7 2000 /usr/share/doc/packages/snort/README.FLEXRESP -rw-r--r-- root root 3215 Jan 20 2004 /usr/share/doc/packages/snort/README.PLUGINS -rw-r--r-- root root 4659 Jan 20 2004 /usr/share/doc/packages/snort/README.UNSOCK -rwxr-xr-x root root 7650 Dec 17 2003 /usr/share/doc/packages/snort/README.WIN32 -rw-r--r-- root root 4977 Oct 20 2003 /usr/share/doc/packages/snort/README.alert_order -rw-r--r-- root root 2556 Mar 26 2003 /usr/share/doc/packages/snort/README.contrib -rw-r--r-- root root 1383 Jan 20 2004 /usr/share/doc/packages/snort/README.csv -rw-r--r-- root root 14849 Jan 20 2004 /usr/share/doc/packages/snort/README.database -rw-r--r-- root root 1002 Jan 20 2004 /usr/share/doc/packages/snort/README.flow -rw-r--r-- root root 10864 Jan 20 2004 /usr/share/doc/packages/snort/README.flow-portscan -rw-r--r-- root root 2323 Feb 4 2004 /usr/share/doc/packages/snort/README.flowbits -rw-r--r-- root root 18130 Jan 20 2004 /usr/share/doc/packages/snort/README.http_inspect -rw-r--r-- root root 7584 Jan 20 2004 /usr/share/doc/packages/snort/README.thresholding -rw-r--r-- root root 3888 Apr 5 2002 /usr/share/doc/packages/snort/README.wireless -rw-r--r-- root root 40017 Oct 28 17:46 /usr/share/doc/packages/snort/Spade-092200.1.tar.bz2 -rw-r--r-- root root 105 Oct 20 2003 /usr/share/doc/packages/snort/TODO -rw-r--r-- root root 11662 Oct 20 2003 /usr/share/doc/packages/snort/USAGE -rw-r--r-- root root 1314 May 28 2002 /usr/share/doc/packages/snort/WISHLIST -rw-r--r-- root root 932 Aug 7 2000 /usr/share/doc/packages/snort/address_config.sh -rw-r--r-- root root 10078 Oct 2 2002 /usr/share/doc/packages/snort/create_mssql -rw-r--r-- root root 8174 Sep 3 2002 /usr/share/doc/packages/snort/create_mysql -rw-r--r-- root root 9141 Sep 3 2002 /usr/share/doc/packages/snort/create_oracle.sql -rw-r--r-- root root 7114 Apr 28 2003 /usr/share/doc/packages/snort/create_postgresql -rw-r--r-- root root 10826 Aug 7 2000 /usr/share/doc/packages/snort/mysql.php3 -rw-r--r-- root root 2637 Oct 28 17:46 /usr/share/doc/packages/snort/passiveOS.tar.bz2 -rw-r--r-- root root 10948 Aug 7 2000 /usr/share/doc/packages/snort/pgsql.php3 -rwxr-xr-x root root 1919 Aug 21 2001 /usr/share/doc/packages/snort/sid-add -rwxr-xr-x root root 3963 Aug 7 2000 /usr/share/doc/packages/snort/snort-sort.pl -rw-r--r-- root root 7980 Jan 5 2001 /usr/share/doc/packages/snort/snort2html.pl -rw-r--r-- root root 224687 Feb 25 2004 /usr/share/doc/packages/snort/snort_manual.pdf -rw-r--r-- root root 146759 Feb 25 2004 /usr/share/doc/packages/snort/snort_manual.tex -rw-r--r-- root root 19731 Mar 20 2002 /usr/share/doc/packages/snort/snort_stat.pl -rw-r--r-- root root 163576 Oct 28 17:46 /usr/share/doc/packages/snort/snortdb-extra.bz2 -rw-r--r-- root root 1682 Aug 7 2000 /usr/share/doc/packages/snort/snortlog -rw-r--r-- root root 10838 Oct 28 17:46 /usr/share/doc/packages/snort/snortnet.tar.bz2 -rw-r--r-- root root 30921 Aug 11 2001 /usr/share/doc/packages/snort/snortpp.c -rw-r--r-- root root 7357 Oct 28 17:46 /usr/share/doc/packages/snort/snortwatch-0.7.tar.bz2 -rw-r--r-- root root 8070 Oct 28 17:46 /usr/share/man/man8/snort.8.gz -rw-r--r-- root root 1721 Oct 28 17:46 /var/adm/fillup-templates/sysconfig.snort drwx------ snort snort 48 Oct 28 17:46 /var/lib/snort drwx------ snort snort 72 Oct 28 17:46 /var/log/snort drwx------ snort snort 48 Oct 28 17:46 /var/log/snort/archive
