Snort.org home  
Got Source? About Snort About Sourcefire Snort FAQ
Sourcefire Network Security - the creators of Snort

Snort Forums Archive

Archive Home » Third Party Tools » MySQL Front-Ends -- Suggestions please

Please note that the categories listed below represent an archived version of our forums pages. To view the current version and be able to post and reply to threads, please register and login here to go to the full forums pages.

[ Notice: Full Version of This Topic ]

MySQL Front-Ends -- Suggestions please


Posted by tmor on March 21, 2005 10:38:28

Basically they are all pretty bad. None of them do datamining across several databases. Our setup current has 12 MySQL databases (which could quadruple) and some 6 fiber sensors running multiple instances of snort (expected to rise when we go global). Acid cant keep up with 15GB databases and Activworx has problems with the number of databases. Going to try out Aanval again as they recently released a new version.

Can anyone suggest any other GNU front-ends that have been tested in the enterprise?


Posted by jejaquez on March 22, 2005 03:50:49

Have you tested OSSIM? Aanval has several bugs and you has to pay for the option to add several sensors.

Besides, OSSIM is a distribution of open source products that are integrated to provide an infrastructure for security monitoring.

http://www.ossim.net

In the other hand we have SAM.

http://freesoftware.lookandfeel.com/sam

Ciao,

Posted by bamm on March 29, 2005 07:31:53

Have you looked at sguil?

http://www.sguil.net

Bammkkkk

Posted by bamm on March 29, 2005 07:32:59

Have you looked at sguil?

http://www.sguil.net

Bammkkkk