A package of scripts to watch for snort alerts, change / create firewall rules to block high priority alerts, and record recent blocks. It will increase block times based on previously recorded blocks

Features

  • Perl script
  • Manages IPTABLES blocks based on priority 2 or higher Snort alerts
  • Can be triggered by specially marked Snort custom messages, reversing source & target for blocking purposes
  • Maintains an SQL database of recent attacks by address & increases block times based on number of attacks seen

Project Activity

See All Activity >

License

BSD License

Follow Snort Reactor

Snort Reactor Web Site

Other Useful Business Software
$300 Free Credits to Build on Google Cloud Icon
$300 Free Credits to Build on Google Cloud

New customers can spin up VMs, build with AI, and query data at no cost.

Put your $300 in credit toward real workloads, then keep building with free monthly usage for 20+ products. No commitment and no charge until you upgrade.
Start Free

Additional Project Details

Operating Systems

Linux

Intended Audience

Advanced End Users, Information Technology, System Administrators

User Interface

Command-line

Programming Language

Perl

Database Environment

SQLite

Related Categories

Perl Security Software, Perl Systems Administration Software, Perl Firewall Software

Registered

2010-07-02