BeBits Information Developer Central Submit Application Your Account Web Links Contact Us
BeBits
Please support our sponsors!
Snort
contact publisher
home page
screenshots
version history
other reviews
send updates for this application
talkback
15 comments
 Published by Peter Moore
   Click here for more information about this publisher...
 Date Posted:   September 1st, 2001
 Last Updated:   October 24th, 2003
 License: See Below
 Downloads: 4,210 total; 1 recently
 Page Views: 25,591 total
 User Rating: awaiting 10 votes Give this application a rating
 Jump to the Downloads section
About Snort:
Snort compiled for BeOS BONE. Snort is "The Open Source Network Intrusion Detection System".

Note that i have three versions here to download. One has PostgreSQL database support compiled in ("full version"),one is a basic compile ("standard version"), and one has Sybase and Microsoft SQL Server support compiled in.

There are three main modes in which Snort can be configured:

  • sniffer,
  • packet logger,
  • and network intrusion detection system.
Sniffer mode simply reads the packets off of the network and displays them for you in a continuous stream on the console.

Packet logger mode logs the packets to the disk.

Network intrusion detection mode is the most complex and configurable configuration, allowing Snort to analyze network traffic for matches against a user defined rule set and perform several actions based upon what it sees.

I included the FAQ but you can read it here. I really recommend having a read of it.

Please note i didn't write this, just compiled it. Please email me any bugs. I shall forward my patches to the Snort people for inclusion so it compiles "out of the box". More info on Snort is over at www.snort.org

Make sure you have a look at the snort.conf file in /boot/beos/etc.
I have text in RED in this file which you will need to take action on.

Documentation is now in /boot/home/config/doc
Rule files are now in /boot/home/config/etc/snort2

Remember BONE is needed for this.

Enjoy!

No Database Support
version 2.0.2 - Other Open Source License 
   
Variation description:
"Standard version" compiled for BeOS BONE.

Remember if you want database support, then SCROLL DOWN and get the other version on this page.

Details about this version:
latest version.

Backup your /etc/snort.conf (/boot/beos/etc/snort.conf) file and read the comments in RED in /etc/snort.conf

 
Intel Version - requires R5   (566 KB) 585 downloads
 
 
Dev LinkLink reliability rating  [rating: 10]    Download this app  Report bad link moooooooo.server101.com
 
Add Additional Location
  Source Available
PostgreSQL support
version 2.0.2 - Other Open Source License 
   
Variation description:
This version of Snort for BeOS BONE has PostgreSQL support compiled in. This means that you can log the data to a database and then write SQL queries to retrieve that data.

For more info see my Snort for BeOS How-To



Details about this version:
latest version.

You may have to update your database schema version if you already run snort. The current database schema version is 106.

To update it have a look at the schema table:
select * from schema;

If the value of vseq is less than 106 then you'll have to update it:
update schema set vseq=106 where vseq=105;

or if your vseq is 104, 103 or whatever change the above SQL.

If you have any problems send me an email.

 
Intel Version - requires R5   (567 KB) 253 downloads
 
 
Dev LinkLink reliability rating  [rating: 10]    Download this app  Report bad link bezip.de (Germany)
Dev LinkLink reliability rating  [rating: 10]    Download this app  Report bad link moooooooo.server101.com
 
Add Additional Location
  Source Available
Sybase and MS SQL Server
version 1.8.7 - Other Open Source License 
   
Variation description:
This variation is compiled with FreeTDS support which means that you can now connect Snorts output to Sybase ASE or Microsoft SQL Server databases.

FreeTDS is required and that is here http://www.bebits.com/app/2457 or with a nice name here: http://www.bebits.com/app/2889

Included in this zip file is a file called create_sybase which contains all of the SQL required to create the Sybase tables and indexes.

If you know Sybase or MS SQL Server then you'll know what to do with this file. If you run SQSH, open this file in StyleEdit, copy all, and paste it into SQSH.

So far it is running fine, so i am going to have to enable Sybase and Microsoft SQL Server support in SnortMonitor now..... ;-)

Snort Config/resource file
You will have to edit your .snortrc file or snort.conf file and add in this line:
output database: log, sybase, host=snort user=youruserid password=yourpassword dbname=snort sensor_name=tcp/ip_address_of_your_pc detail=full

The order of this is important because it will crash if you don't have it in the above order
Please email me any bugs.

Details about this version:
This is the first version of Snort which supports Sybase. There is already Microsoft SQL Server support, but not using FreeTDS, so this release is i guess a "landmark release" for Snort and FreeTDS :-)

 
Intel Version - requires R5   (585 KB) 258 downloads
 
 
Dev LinkLink reliability rating  [rating: 10]    Download this app  Report bad link www.loved.com (Australia)
 
Add Additional Location
  Source Available
 
Related Links:
Recent Talkback comments:
  • NOOOOOOOOOO - IgRussell
  • see you out there Mooooooo - verranm
  • Na, we're in your blood - zenja

    Post your own comment to the Talkback for this application!
    Report a problem with the listing for this application!
  • Like this app? Have questions or comments?
    Why not tell the author? Use the "e-mail publisher" link to get in touch with the publisher; they usually love getting feedback.
     
    The Green Board
      Recent Downloads  -  # 666
    Total Downloads  -  # 634
    Total Views  -  # 413
    User Ratings  -  N/A
      Network Utilities
    1.  QEMU - 9.62
    2.  ScummVM - 9.50
    3.  cpu_fix - 9.42
    4.  Jukebox - 9.36
    5.  Haiku AGP busm... - 9.35
    6.  vim6 - 9.31
    7.  Beezer - 9.25
    8.  BeeF - 9.25
    9.  HandBrake - 9.24
    10.  DOSBox - 9.22
    1.  Realtek RTL8139... - 300
    2.  ATI Rage 128 Pr... - 198
    3.  BeOS 5 Personal... - 198
    4.  Ati Radeon Grap... - 153
    5.  USB Serial driver - 109
    6.  Ensoniq AudioPC... - 106
    7.  Broadcom 440x 10... - 95
    8.  DjVu Viewer - 88
    9.  VLC Media Player - 83
    10.  S3 Trio 64 v2 DX... - 78
    You are not logged in.
     Login or create an account...
    Hosted by NetConnect

     
    Unless otherwise noted, everything is copyright © 1999-2002 Fifth Ace Productions, LLC. All Rights Reserved.
    For more legal trivia, take a gander at our
    Legal Stuff page and our Privacy Statement.
    Fifth Ace Productions