r114 - 17 Jul 2010 - 17:32:00 - JamesMcQuaidYou are here: TWiki >  Main Web > AllProjects > SnortConfSamples

Snort.Conf Samples

The goal of this page is to make a set of sample snort.conf files, and some samples for using other common tools with data from Emerging Threats. These will represent different size and goal installs of snort. We do not intend to provide snort.conf files that you can use without modification or understanding, but guides to help you benefit from the experience of the community as a whole.

We welcome submissions and tips to improve these files, as well as ideas for new types of configs to add.

This page is maintained by JamesMcQuaid

Diagram portraying home network defended by multiple layers of Snort Inline:
EmergingNetworkTopology.gif

What Every Snort User Should Do

What Every Snort User Should Do: What to add to your local ruleset that's not in the main rulesets: http://doc.emergingthreats.net/bin/view/Main/WhatEverySnortUserShouldDo

Want some guidance on using the Emerging Threats Rulesets for the first time? http://doc.emergingthreats.net/bin/view/Main/NewUserGuide

Need tips on writing rules? http://doc.emergingthreats.net/bin/view/Main/SnortSigs101

Suricata is the next generation IDS/IPS engine, and we will be featuring configuration samples in the near future.

HoneywallSamples - includes Honeywall and Smoothwall Snort config files, installation and usage tutorials, and DNS Black hole files for Smoothwall (ideal for home users new to a firewall server)

EmergingFirewallRules

RussianBusinessNetwork (includes resources for blocking the RBN ISP's former customers, and other organized crime networks).

WebBasedResearchTools

SuricataUbuntuSetup

FirekeeperforFirefox

Edit | Attach | Printable | Raw View | Backlinks: Web, All Webs | History: r114 < r113 < r112 < r111 < r110 | More topic actions
 
Emerging Threats
This site is powered by the TWiki collaboration platformCopyright © by the contributing authors. All material on this collaboration platform is the property of the contributing authors.
Ideas, requests, problems regarding TWiki? Send feedback