OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Intrusion Detection Logfile Software
From: Yoann LeCorvic (yoann.lecorvicINFRASOFT-CIVIL.COM)
Date: Wed Oct 11 2000 - 07:05:36 CDT


Hi

I use Snort with AracNIDS coupled with SHADOW 1.6 for historical logging. SHADOW is using tcpdump to log all traffic, and pass it to an analysis workstation through ssh. The ananlysis station uses filters to display what you need and publishes it on an Apache Server.

Here is where you can get it

http://www.nswc.navy.mil/ISSEC/CID/

Cheers

Yoann Le Corvic - Internet Administrator
Email : yoann.lecorvicinfrasoft-civil.com
Web : http://www.infrasoft-civil.com/
========================
Infrasoft Ltd
North Heath Lane
Horsham, West Sussex RH12 5QE
United Kingdom
Tel : +44 (0)1403 259511
Fax : +44 (0)1403 217728

**********************************************************************
This email message, including any files transmitted with it, is
confidential and intended solely for the use of the individual or
entity to whom it is addressed. If you have received this email
in error please advise the sender and delete the message.
**********************************************************************