Snort-AI

Bringing intelligence to network security

  • Increase font size
  • Default font size
  • Decrease font size
Snort-AI

New SVN branch for documents

E-mail Print PDF
Now documentation is in SVN repository, join us participating with articles, manuals, technical guides or books. Find the new branch on: 
https://snort-ai.svn.sourceforge.net/svnroot/snort-ai/branch/documents
Last Updated on Monday, 13 April 2009 23:33
 

Portscan-AI completely ported

E-mail Print PDF

Portscan-AI (the only AI-preprocessor 100% functional so far) works now for the last version of Snort(TM), 2.8.3.2. Install instructions can be found here. This is the first milestone on the roadmap that has been reached. Now we have to document a lot, so developers can find a comprehensive guide to program stuff for the new Snort (not only AI-based preprocessors). I must say that it was much of a problem to port it, since the old instructions are still valid.

Take into account that etc/snort.conf file had been edited to load only necessary stuff for Snort-AI to work. If you need dynamic preprocessors or anything like that, please add what you consider necessary and refer to its own documentation for more details. Running options are exactly the same as if you were running standard Snort distribution.

License: GPL v2

IDE: Kdevelop 3.5.9 (there's a project file included)

Sources: svn co https://snort-ai.svn.sourceforge.net/svnroot/snort-ai/trunk/snortai-stable

Last Updated on Wednesday, 04 March 2009 15:45
 

Wiki has been enabled

E-mail Print PDF

A brand new wiki has been enabled, please check here. We will move progressively all docs there, by now, you can only find documentation about Snort-AI Web Console.

For those out there wondering "what the heck are they doing? we need code!",here is an update. I'm working on a new web console, not only suitable to supportportscan-spp, but any other "analyzer", using a plugin system. This is a screenshot:

 

It doesn't show too much, but the acual changes have been performed beneath. It's not functional yet, but testing code is under branch/sai-pm svn branch. sai-pm means "Snort-AI Plugin Manager".

Last Updated on Wednesday, 25 February 2009 15:13
 

And now, forums

E-mail Print PDF
Three categories have been enabled so you can post your ideas, complains and tips. Check here.
 

SVN Service is up and running

E-mail Print PDF

The SVN service is now enabled. You can download the latest version of patched snort (currently 2.4.3) just by typing

 svn co https://snort-ai.svn.sourceforge.net/svnroot/snort-ai/trunk

 Feel free to upload your own patches. Soon, we'll set up the tracker system

 
More Articles...
  • «
  •  Start 
  •  Prev 
  •  1 
  •  2 
  •  Next 
  •  End 
  • »


Page 1 of 2