Table of Contents

Questi sono appunti preliminari, sappiatelo

Installazione

apt-get install libpcap-dev libpcre3-dev iptables-dev libnet0-dev

{{{ tar zvxf libdnet-1.11.tar.gz cd libdnet-1.11 ./configure make make install </code>

cd snort-2.6.0.2

./configure --enable-inline --enable-flexresp2 --enable-react --with-libipq-libraries=/usr/lib/ --with-libipq-includes=/usr/include/libipq/ --with-libnet-includes=/usr/include/ --enable-dynamicplugin

make
make install
mkdir /etc/snort
mkdir /var/log/snort
adduser --disabled-password snort
chown snort. /var/log/snort
case $1 in

        start)
                echo Starting SNORT
                /usr/local/bin/snort -qD -u snort -g snort -c /etc/snort/snort.conf
        ;;
        stop)
                echo Stopping SNORT
                kill  `cat /var/run/snort_*.pid`
        ;;
esac

TODO