Snort

Snort

Cisco
+
+

Related Products

  • Paessler PRTG
    741 Ratings
    Visit Website
  • Heimdal Endpoint Detection and Response (EDR)
    54 Ratings
    Visit Website
  • Blumira
    131 Ratings
    Visit Website
  • Cisco Umbrella
    1,177 Ratings
    Visit Website
  • NMIS
    14 Ratings
    Visit Website
  • LeanData
    1,031 Ratings
    Visit Website
  • Everstream Analytics
    27 Ratings
    Visit Website
  • HostZealot
    280 Ratings
    Visit Website
  • Cloudbrink
    28 Ratings
    Visit Website
  • Unimus
    29 Ratings
    Visit Website

About

Snort is the foremost Open Source Intrusion Prevention System (IPS) in the world. Snort IPS uses a series of rules that help define malicious network activity and uses those rules to find packets that match against them and generates alerts for users. Snort can be deployed inline to stop these packets, as well. Snort has three primary uses: As a packet sniffer like tcpdump, as a packet logger — which is useful for network traffic debugging, or it can be used as a full-blown network intrusion prevention system. Snort can be downloaded and configured for personal and business use alike. Once downloaded and configured, Snort rules are distributed in two sets: The “Community Ruleset” and the “Snort Subscriber Ruleset.” The Snort Subscriber Ruleset is developed, tested, and approved by Cisco Talos. Subscribers to the Snort Subscriber Ruleset will receive the ruleset in real-time as they are released to Cisco customers.

About

Tcpdump is a powerful command-line packet analyzer that allows users to display the contents of network packets transmitted or received over a network to which the computer is attached. It operates on most Unix-like systems, including Linux, Solaris, FreeBSD, NetBSD, OpenBSD, and macOS, utilizing the libpcap library for network traffic capture. Tcpdump can read packets from a network interface card or from a previously created saved packet file, and it provides options to write packets to standard output or a file. Users can apply BPF-based filters to limit the number of packets processed, enhancing usability on networks with high traffic volumes. The tool is distributed under the BSD license, making it free software. In many operating systems tcpdump is available as a native package or port, which simplifies installation of updates and long-term maintenance.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

IT teams searching for a network detection and prevention solution

Audience

Network administrators seeking a tool to monitor and analyze their network traffic

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

Free
Free Version
Free Trial

Reviews/Ratings

Overall 5.0 / 5
ease 3.0 / 5
features 5.0 / 5
design 5.0 / 5
support 5.0 / 5

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Cisco
Founded: 1984
United States
www.snort.org

Company Information

tcpdump
United States
www.tcpdump.org

Alternatives

Alternatives

NetworkMiner

NetworkMiner

Netresec
Palo Alto ATP

Palo Alto ATP

Palo Alto
WinDump

WinDump

WinPcap
Snort

Snort

Cisco

Categories

Categories

Integrations

C
C++
Elastic Observability
EndaceProbe
Joe Sandbox
NXLog
Palo Alto ATP
Panaseer
Picus
Project Ares
ThreatQ

Integrations

C
C++
Elastic Observability
EndaceProbe
Joe Sandbox
NXLog
Palo Alto ATP
Panaseer
Picus
Project Ares
ThreatQ
Claim Snort and update features and information
Claim Snort and update features and information
Claim tcpdump and update features and information
Claim tcpdump and update features and information