User Tools

Site Tools


сервис_snort

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
Next revision Both sides next revision
сервис_snort [2020/03/10 12:50]
val
сервис_snort [2021/02/23 14:36]
val [Debian/Ubuntu]
Line 15: Line 15:
 ... ...
 DEBIAN_SNORT_INTERFACE="​eth2"​ DEBIAN_SNORT_INTERFACE="​eth2"​
 +#​DEBIAN_SNORT_INTERFACE="​eth1"​
 DEBIAN_SNORT_HOME_NET="​192.168.0.0/​16"​ DEBIAN_SNORT_HOME_NET="​192.168.0.0/​16"​
 +#​DEBIAN_SNORT_HOME_NET="​any"​
 ... ...
 </​code><​code>​ </​code><​code>​
Line 40: Line 42:
 ==== Debian/​Ubuntu ==== ==== Debian/​Ubuntu ====
 <​code>​ <​code>​
-# tail -f /​var/​log/​auth.log+# tail -f /​var/​log/​auth.log ​| grep Red
 </​code>​ </​code>​
  
-==== Пример атаки с server.isp.un ====+==== Пример атаки с isp.un ====
 <​code>​ <​code>​
-server.isp.un$ wget http://​server.corpX.un/​root.exe+isp.un$ wget http://​server.corpX.un/​root.exe
 </​code>​ </​code>​
  
Line 52: Line 54:
   * [[http://​oreilly.com/​pub/​h/​1393|Write Your Own Snort Rules ]]   * [[http://​oreilly.com/​pub/​h/​1393|Write Your Own Snort Rules ]]
  
-==== FreBSD/Debian/​Ubuntu ====+==== Debian/​Ubuntu ====
 <​code>​ <​code>​
 # cat rules/​local.rules # cat rules/​local.rules
сервис_snort.txt · Last modified: 2024/05/11 16:43 by val