etch  ] [  etch-m68k  ] [  lenny  ] [  squeeze  ] [  sid  ]
[ Source: snort  ]

Package: snort (2.3.3-11)

Flexible Network Intrusion Detection System

Snort is a libpcap-based packet sniffer/logger which can be used as a lightweight network intrusion detection system. It features rules based logging and can perform content searching/matching in addition to being used to detect a variety of other attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, and much more. Snort has a real-time alerting capability, with alerts being sent to syslog, a separate "alert" file, or even to a Windows computer via Samba.

This package provides the plain-vanilla snort distribution and does not provide database support (available in snort-pgsql and snort-mysql).

Homepage: http://www.snort.org

Tags: System Administration: Logging, Monitoring, User Interface: Daemon, Networking: Server, Role: Program, Security: Intrusion Detection, Purpose: Monitoring

Packages providing snort

snort-mysql
Flexible Network Intrusion Detection System [MySQL]
snort-pgsql
Flexible Network Intrusion Detection System [PostgreSQL]

Other Packages Related to snort

  • depends
  • recommends
  • suggests
  • dep: adduser (>= 3.11)
    Add and remove users and groups
  • rec: snort-doc
    Documentation for the Snort IDS [documentation]

Download snort

Download for all available architectures
Architecture Package Size Installed Size Files
m68k 327.8 kB796 kB [list of files]