From: Brian J. <bja...@ci...> - 2004-01-21 11:45:08
|
Bill, Have a look at snortsnarf at http://www.silicondefense.com/software/snortsnarf/. I find this useful and being written in perl not to bad to taylor if you have to. regards, Brian >All, > >Now that I have my snort and snort-inline box up and going I would like >to get a report of what the worst items are. That way my boss can see >that in a week get hit with the SQL worm X number of times or John with >IP x.x.x.x is sending out X number of bad whatever. Any body know of a >sometime that can do this? > >Thanks, >Bill > >-- > >********************************** >Bill Warren >Optivel, Inc. >E-mail: bw...@op... >Voice: 317.275.2305 >Fax: 317.275.2301 >Web: http://www.optivel.com >********************************** |