Skip to main content

SNORT - Anyone using Snort as an IDS?

More
14 years 6 months ago - 11 years 10 months ago #34877 by skepticals
Anyone using SNORT for IDS?
Last edit: 11 years 10 months ago by Chris.
More
14 years 5 months ago #34900 by JamieP
Replied by JamieP on topic Re: SNORT
no, but i've just had a look at their site and it looks quite interesting.... we currently dont have an IDS system, and with budgets being strained as it is, that might be a possible solution.

have you used it, do you know much about it?

Jamie Parks
Network Engineer, UK
More
14 years 5 months ago #34915 by skepticals
Replied by skepticals on topic Re: SNORT
I don't know a great deal about it. I was looking into implementing it. I have looked into it a million times before but I get technology ADD and have other projects to do.

I was looking to see if anyone thinks it's the way to go or if there is another solution to use.
More
14 years 5 months ago #34917 by JamieP
Replied by JamieP on topic Re: SNORT
in terms of support, i cant imagin in compaires to some of the other solutions on the market, i have used Radwares Defence Pro before and been very impressed with it. But obvioulsy you pay through the nose, but you get excellent support from them.

Jamie Parks
Network Engineer, UK
More
14 years 5 months ago #35038 by BIGD
Replied by BIGD on topic Re: SNORT
I have used it for some time now with Smoothwall-SP1
and would NOT use a firewall without it.
More
14 years 5 months ago #35045 by skepticals
Replied by skepticals on topic Re: SNORT
We currently use an ASA 5520 for our firewall. Would I just need to span (mirror) a port to a SNORT box and have it analyze the traffic?
Time to create page: 0.138 seconds