14
網工班 網工班79SUSE Linux Lab SUSE Linux Lab Snort 入侵偵測系統 學生:周承緯 指導老師:彭學勤 老師 指導老師:楊宏文 老師 1

Linux 30% LAB SNORT 31000010

  • Upload
    joe-gg

  • View
    225

  • Download
    0

Embed Size (px)

DESCRIPTION

Linux 30% LAB SNORT 31000010

Citation preview

  • 79

    SUSE Linux LabSUSE Linux LabSnort

    :: :

    1

  • SNORT () SnortIDS Snort IDS OSIOSI

    2

  • Snort Snort

    (rules)Alert

    3

  • Rule

    Libpacp

    4

  • SnortSnort

    Snorthttp://www.snort.org/ p gRules

    5

  • Snort.orgVRT30VRT30

    :

  • BASE

    BASESnortMySQL BASESnortMySQL

    Snort

    7

  • SUSEstudioopen suse11.2SUSEstudioopen suse11.2

    vmwarevmware

    :libpcap1 libpcap-devel pcre pcre-deve mysql mysql client libmysqlclient16mysql mysql-client libmysqlclient16 libmysqlclient-devel apache2 apache2-mod-php5 php5 php5 mysql php5 gdphp5 php5 php5-mysql php5-gd Iputils(ping)

    8

  • S tSnort

  • #watch tail -5 /var/log/snort/eth0/alert pingSnortippingSnortip

  • Snortmysqlsnort-mysql

    apachephp

  • BASE

    #snort c /etc/snort/snort.conf &

  • LABBASE Li l b Linux lab Linux :!