A package of scripts to watch for snort alerts, change / create firewall rules to block high priority alerts, and record recent blocks. It will increase block times based on previously recorded blocks

Features

  • Perl script
  • Manages IPTABLES blocks based on priority 2 or higher Snort alerts
  • Can be triggered by specially marked Snort custom messages, reversing source & target for blocking purposes
  • Maintains an SQL database of recent attacks by address & increases block times based on number of attacks seen

Project Activity

See All Activity >

License

BSD License

Follow Snort Reactor

Snort Reactor Web Site

You Might Also Like
SKUDONET Open Source Load Balancer Icon
SKUDONET Open Source Load Balancer

Take advantage of Open Source Load Balancer to elevate your business security and IT infrastructure with a custom ADC Solution.

SKUDONET ADC, operates at the application layer, efficiently distributing network load and application load across multiple servers. This not only enhances the performance of your application but also ensures that your web servers can handle more traffic seamlessly.

Additional Project Details

Operating Systems

Linux

Intended Audience

Information Technology, Advanced End Users, System Administrators

User Interface

Command-line

Programming Language

Perl

Database Environment

SQLite

Related Categories

Perl Security Software, Perl Systems Administration Software, Perl Firewall Software

Registered

2010-07-02