Linux-Tip News

We are proud to present Linux-Tip Europe. This page is designed to provide the Linux users community (not only in Europe) with news and articles that are of interest to them. It works by allowing members of the community to submit news and articles relating to Linux hardware and software. This same community can then decide what tips should be promoted based on what they consider to be the most important or interesting to the community by voting stories up and down. Stories that receive enough votes are promoted to the Linux-Tip Europe homepage. Bookmark and Share
 
Home arrow Workshops arrow Firewall/IDS arrow The perfect start with Smoothwall Express 3.0
The perfect start with Smoothwall Express 3.0 Print E-mail
Sunday, 09 September 2007
Article Index
The perfect start with Smoothwall Express 3.0
Smoothwall Post-Install Configuration
Configuring the Intrusion Detection System
Smoothwall Status Log Files and Updates


Step 3: Configuring the Intrusion Detection System


Smoothwall comes with Snort support. Snort is an open source network intrusion prevention system (IPS) capable of performing real-time traffic analysis and packet-logging on IP networks. It can perform protocol analysis, content searching & matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts and more.

In our case, the supported Snort IDS detects potential security attempts from outside our network, but Snort does not prevent these attempts!

To get snort running on your system, you  need to register on the Snort website first. After minutes, you will receive an email with further instructions to get the “Oink code”. 
Please use this code like the picture shows below:



That’s it. Let’s test if Snort is really doing its job. You can use a port scanner or a penetration test tool like Nessus to check this out. Please check the IDS Log entries after “attacking” your box. You should see similar entries like this:


 
< Prev   Next >

Bookmark this article

Virus Info Feed

Alexa Traffic Stats

Sedo - Domains kaufen und verkaufen das Projekt linux-tip.eu steht zum Verkauf Besucherstatistiken von linux-tip.eu etracker® Web-Controlling statt Logfile-Analyse
Urlaub Spanien