Setting up NIDS

Setting up NIDS

Secure Home | Search | About
 General Computer Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Setting up NIDS Keme 11-18-2006
Posted by Keme on November 18, 2006, 9:14 am
If you were  Registered and logged in, you could reply and use other advanced thread options
I am in the process of setting up a NIDS, consisting of Snort sensors,
Barnyard MySQL and BASE, probably on OpenBSD. I have installed/compiled
all modules on one computer, to confirm that they will work together
(with snortsam and using OpenBSD "pf").

I have some notion, but still am a bit unsure where to install the
different modules for sufficient performance for a live network.
Searched the web but could not find any guides. I put Snort on the
sensors and MySQL on a central server, but where do I put Barnyard and
BASE for adequate performance? (On each sensor, the database server or a
separate "transport"/webserver computer?)

I could test it myself, but I guess people have done it before and have
some experience to share. I have a number of different computers, with
varying specs and room for 3-4 NICs. What I'm looking for is a general
guide with some info on what load Barnyard and BASE generate on CPU, and
the data stream load (log file reading vs. database update).

Similar ThreadsPosted
NIDS May 7, 2007, 11:32 am
setting up a server to test security apps February 22, 2005, 9:50 pm
Advice on setting up a packet sniffer at home January 16, 2006, 4:33 pm
Advice on setting up a packet sniffer at home January 16, 2006, 4:33 pm
Advice on setting up a packet sniffer at home January 16, 2006, 4:33 pm
Setting Local Policies from batch file command May 20, 2005, 8:31 am
MS WORD launches slowly due to IE local security setting November 2, 2006, 9:04 am

The site map in XML format XML site map

Contact Us | Privacy Policy