Comment Ist simple... (Score 1) 153
- Linux is for the clueless -
If you'd like to see an example of Snort logging to a DB with an Apache/PHP web server displaying the latest attack stats, have a look here.
Snort's kinda like ngrep, but it's also kind of like NetRanger and RealSecure (and Dragon and NFR and BlackICE and KSM and NetProwler...) in how it does its job. Just because commercial NIDS have fancy wrappers (GUIs) and commercial support organizations doesn't necessarily mean that they are vastly different than a program like Snort. I'd be willing to bet that there are more similarities than differences in a lot of ways.
"Morality is one thing. Ratings are everything." - A Network 23 executive on "Max Headroom"