pig


Last version : 2.0 - 08/2004



DESCRIPTION


SNORTER is an HTML reporting tool for the network intrusion detection system SNORT http://www.snort.org/ . SNORTER connects to the MYSQL SGBD and query it for events generated by SNORT or any other device using SNORT-DB format. See the tool LOGSNORTER at http://www.snort.org/dl/contrib/other_logs/

Features :

The features of Snorter are :


Screenshots :

Start page
Main statistics page
By host alerts page
Detailed investigation page for an event



DOWNLOAD


SNORTER can be downloaded HERE

A patched version of LOGSNORTER

Note : this version (v0.3) correct a bug in the parsing subroutine of the v0.2

The old 0.2 version of LOGSNORTER is always downloadable HERE


SNORTER needs :

Perl-DBI - http://search.cpan.org/~timb/DBI-1.38/
Perl-CGI - http://search.cpan.org/~lds/CGI.pm-3.00/
GD Graphic library - http://www.boutell.com/gd/
Perl-GD - http://search.cpan.org/~lds/GD-2.11/
Perl-GD-Graph - http://search.cpan.org/~mverb/GDGraph-1.43/
Perl-GD-Text - http://search.cpan.org/~mverb/GDTextUtil-0.86/



CONTACTS


Jean-Philippe Guillemin - jpgu~AT~users.sourceforge.net



LINKS


Links to over snort-friendly tools :

SNORT Site - http://www.snort.org/
SnortSnarf? - http://www.silicondefense.com/software/snortsnarf/
ACID - http://www.cert.org/kb/acid/
SNORTICUS - http://snorticus.baysoft.net/
SNORTSTAT - http://xanadu.incident.org/snort/
SNORTDOG - http://shweps.free.fr/snortdog.xml
SNORTLOG - http://packetstorm.securify.com/sniffers/snort/snortlog.pl



LICENSE


Copyright Jean-Philippe Guillemin.
This program is free software; you can redistribute it and/or modify
it under the terms of the GNU General Public License as published by
the Free Software Foundation; either version 2 of the License, or
(at your option) any later version.

This program is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.

You should have received a copy of the GNU General Public License
along with this program; if not, write to the Free Software
Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
Please take a look at http://www.gnu.org/copyleft/gpl.html