Top five Snort tips
Our Snort Report tip series helps value-added resellers and systems integrators troubleshoot and configure the open source intrusion detection system on clients' networks. Check out our five most popular tips from expert Richard Bejtlich, ranging from setting up the IDS to upgrading it.

TIP #1-----------------------------------------------------------------------

Snort IDS installation basics and tips for security resellers
Snort can be immensely helpful with the prevention of intrusions on your clients' networks. Learn how to install the intrusion detection system and utilize it to its fullest capacity.

TIP #2-----------------------------------------------------------------------

Snort IDS upgrade and tips on the Snort.conf file
Check out this tip for details on the Snort 2.6.1.2 upgrade and snort.conf file functions enabled by default, such as IP ranges, ports of interest and preprocessors.

TIP #3-----------------------------------------------------------------------

To continue reading for free, register below or login

Requires Membership to View

To gain access to this and all member only content, please provide the following information:

By submitting your registration information to SearchSecurityChannel.com you agree to receive email communications from the TechTarget network of sites, and/or third party content providers that have relationships with TechTarget, based on your topic interests and activity, including updates on new content, event notifications, new site launches and market research surveys. Please verify all information and selections above. You may unsubscribe at any time from one or more of the services you have selected by editing your profile, unsubscribing via email or by contacting us here

  • Your use of SearchSecurityChannel.com is governed by our Terms of Use
  • We designed our Privacy Policy to provide you with important disclosures about how we collect and use your registration and other information. We encourage you to read the Privacy Policy, and to use it to help make informed decisions.
  • If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States.

Snort Report
Read the rest of the Snort Report tips from Richard Bejtlich

Output options for Snort data
Without output options, VARs can't produce Snort data in a meaningful manner. Learn the capabilities and limitations of different features.

TIP #4-----------------------------------------------------------------------

How to test Snort
As a value-added reseller or service provider, you may need to test Snort to ensure that the open source IDS is detecting malicious activity on your client's network or to determine how the custom rule you wrote will impact Snort's performance. Learn the best practices for testing Snort.

TIP #5-----------------------------------------------------------------------

Snort IDS rules
Familiarize yourself with Snort IDS rules best practices in this edition of Snort Report, which includes a discussion on Sourcefire and Bleeding Edge Threats (BET) rules.


This was first published in November 2007