Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Snort-Users
[Top] [All Lists]

Re: [Snort-users] ACID/BASE vs PRELUDE

Subject: Re: [Snort-users] ACID/BASE vs PRELUDE
Date: Mon, 19 Sep 2005 10:12:45 -0700
Heya,

Disclaimer: member of Prelude Hybrid IDS development team.
Prelude as a Snort management console depends a little bit on what you mean as a management console. In terms of viewing alerts, it does a great job of providing a consolidated interface for security events across all of your platforms and devices.
If, however, you mean as a method for actual management (changing configuration, stopping and restarting services, managing rules, etc), Prelude probably won't give you what you're looking for (yet!).
Basic support for sensor management is present in Prelude 0.9 (which goes stable within the next few days), but the interfaces aren't written yet.
At any rate, Prelude's greatest strength is in presenting your Snort alerts alongside your host-based alerts, your firewall alerts, and all manner of other things. BASE appears to be more of an analytical engine for Snort alone.


Gene R Gomez

On Aug 26, 2005, at 10:38 AM, ddodge wrote:

 All,

 Has anyone done a good comparision between BASE
 (http://secureideas.sourceforge.net/) and Prelude
 (http://www.prelude-ids.org/) as a managment console for Snort ?


-------------------------------------------------------
SF.Net email is sponsored by:
Tame your development challenges with Apache's Geronimo App Server. Download
it for free - -and be entered to win a 42" plasma tv or your very own
Sony(tm)PSP.  Click here to play: http://sourceforge.net/geronimo.php
_______________________________________________
Snort-users mailing list
Snort-users@lists.sourceforge.net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

<Prev in Thread] Current Thread [Next in Thread>