您的位置:首页 > 理论基础 > 计算机网络

计算机安全超级工具(十七)-网络监控

2009-12-13 12:32 330 查看
Snort

Snort is a libpcap-based packet sniffer/logger which can be used as a

lightweight network intrusion detection system. It features rules

based logging and can perform content searching/matching in addition

to being used to detect a variety of other attacks and probes, such

as buffer overflows, stealth port scans, CGI attacks, SMB probes, and

much more. Snort has a real-time alerting capability, with alerts being

sent to syslog, a separate "alert" file, or even to a Windows computer

via Samba.

This package provides the plain-vanilla version of Snort and does not

provide database (available in snort-pgsql and snort-mysql) support.

Canonical does not provide updates for snort. Some updates may be provided by the Ubuntu community.
内容来自用户分享和网络整理,不保证内容的准确性,如有侵权内容,可联系管理员处理 点击这里给我发消息
标签: