Snort

Snort

Cisco
+
+

Related Products

  • Blumira
    150 Ratings
    Visit Website
  • Cloudbrink
    28 Ratings
    Visit Website
  • HostZealot
    307 Ratings
    Visit Website
  • Emtrain
    53 Ratings
    Visit Website
  • Setplex
    10 Ratings
  • Signalmash
    16 Ratings
    Visit Website
  • UptimeRobot
    880 Ratings
    Visit Website
  • Notifyre
    63 Ratings
    Visit Website
  • Monk
    8 Ratings
    Visit Website
  • CBT Nuggets
    493 Ratings
    Visit Website

About

Snort is the foremost Open Source Intrusion Prevention System (IPS) in the world. Snort IPS uses a series of rules that help define malicious network activity and uses those rules to find packets that match against them and generates alerts for users. Snort can be deployed inline to stop these packets, as well. Snort has three primary uses: As a packet sniffer like tcpdump, as a packet logger — which is useful for network traffic debugging, or it can be used as a full-blown network intrusion prevention system. Snort can be downloaded and configured for personal and business use alike. Once downloaded and configured, Snort rules are distributed in two sets: The “Community Ruleset” and the “Snort Subscriber Ruleset.” The Snort Subscriber Ruleset is developed, tested, and approved by Cisco Talos. Subscribers to the Snort Subscriber Ruleset will receive the ruleset in real-time as they are released to Cisco customers.

About

Tcpdump is a powerful command-line packet analyzer that allows users to display the contents of network packets transmitted or received over a network to which the computer is attached. It operates on most Unix-like systems, including Linux, Solaris, FreeBSD, NetBSD, OpenBSD, and macOS, utilizing the libpcap library for network traffic capture. Tcpdump can read packets from a network interface card or from a previously created saved packet file, and it provides options to write packets to standard output or a file. Users can apply BPF-based filters to limit the number of packets processed, enhancing usability on networks with high traffic volumes. The tool is distributed under the BSD license, making it free software. In many operating systems tcpdump is available as a native package or port, which simplifies installation of updates and long-term maintenance.

Platforms Supported

Windows Not Supported
Mac Not Supported
Linux Not Supported
Cloud Supported
On-Premises Not Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Platforms Supported

Windows Supported
Mac Supported
Linux Supported
Cloud Not Supported
On-Premises Not Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Audience

IT teams searching for a network detection and prevention solution

Audience

Network administrators seeking a tool to monitor and analyze their network traffic

Support

Phone Support Not Supported
24/7 Live Support Not Supported
Online Supported

Support

Phone Support Not Supported
24/7 Live Support Not Supported
Online Supported

API

Offers API Not Supported

API

Offers API Not Supported

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version Not Supported
Free Trial Not Supported

Pricing

Free
Free Version Supported
Free Trial Not Supported

Reviews/Ratings

Overall 5.0 / 5
ease 3.0 / 5
features 5.0 / 5
design 5.0 / 5
support 5.0 / 5

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Pros & Cons from Real Users

Pros

  • Free for any platform not just the web. Has multiple different filter lists to learn about and choose from based off of your needs.

Cons

  • A little bit of a pain to set up on windows if you don't know how to use command prompt.

Training

Documentation Supported
Webinars Not Supported
Live Online Not Supported
In Person Not Supported

Training

Documentation Supported
Webinars Not Supported
Live Online Not Supported
In Person Not Supported

Company Information

Cisco
Founded: 1984
United States
www.snort.org

Company Information

tcpdump
United States
www.tcpdump.org

Alternatives

Alternatives

NetworkMiner

NetworkMiner

Netresec
Snort

Snort

Snort Social
Snort

Snort

Cisco
Capsa

Capsa

Colasoft

Categories

Categories

Packet Analyzers Supported
Packet Capture Supported

Integrations

C Not Supported
C++ Not Supported
Elastic Observability Supported
EndaceProbe Supported
Joe Sandbox Supported
NXLog Supported
Palo Alto ATP Supported
Panaseer Supported
Picus Supported
Project Ares Supported
ThreatQ Supported

Integrations

C Supported
C++ Supported
Elastic Observability Not Supported
EndaceProbe Not Supported
Joe Sandbox Not Supported
NXLog Not Supported
Palo Alto ATP Not Supported
Panaseer Not Supported
Picus Not Supported
Project Ares Not Supported
ThreatQ Not Supported
Claim Snort and update features and information
Claim Snort and update features and information
Claim tcpdump and update features and information
Claim tcpdump and update features and information