[Oisf-users] Suricata-GUI

Will Metcalf william.metcalf at gmail.com
Tue Jun 22 17:57:27 UTC 2010


Any of the available on-line guides for snort should work for us.
Instead of pointing barnyard/barnyard2 at a snort output directory
containing unified and unified2 files you can point it at a suricata
output directory containing unified/unified2 output.

Regards,

Will

On Tue, Jun 22, 2010 at 11:22 AM, Anas.B <a.bouhsaina at gmail.com> wrote:
> Please, can u guide, where can i find the Install solution ? (with Suricata)
>
>
> Thank you.
>
> 2010/6/22 Will Metcalf <william.metcalf at gmail.com>
>>
>> Yes they do. But you can use barnyard/barnyard2 to feed the respective
>> databases using the unified/unifed2 output from suricata.
>>
>> Regards,
>>
>> Will
>>
>> On Tue, Jun 22, 2010 at 10:13 AM, Martin Spinassi
>> <martins.listz at gmail.com> wrote:
>> > On Tue, 2010-06-22 at 09:43 -0500, Will Metcalf wrote:
>> >> You can use anything that will take output from barnyard or can handle
>> >> unified/unified2 output natively.  These tend to be the most popular
>> >> ones I think, although I'm sure there are many more.
>> >>
>> >> http://base.secureideas.net/
>> >> http://snorby.org/
>> >> http://sguil.sourceforge.net/
>> >>
>> >> Regards,
>> >>
>> >> Will
>> >
>> > Will,
>> >
>> > AFAIK, those gui tools needs a database to gather Suricata's statistics,
>> > but suricata works with plain logs, not with a db, am I right?
>> >
>> >
>> > Regrads,
>> >
>> > Martin
>> >
>> >
>
>



More information about the Oisf-users mailing list