Snort.org home  
Got Source? About Snort About Sourcefire Snort FAQ
Sourcefire Network Security - the creators of Snort

Snort Forums Archive

Archive Home » Third Party Tools » Sguil

Please note that the categories listed below represent an archived version of our forums pages. To view the current version and be able to post and reply to threads, please register and login here to go to the full forums pages.

[ Notice: Full Version of This Topic ]

Sguil


Posted by geek00L on May 11, 2005 19:54:49

If you want a snort analyst console which showing alerts in real time and allowing you to run proper analysis, sguil is one of the best choice, instead of having those alerts displayed and without what to do next once getting the alert, sguil allows you to navigate the session data and reading the conversation of the connection(transcript). Check it out, perhaps it is what you want :)

http://sguil.sourceforge.net/