|
|
|
|
Next: 6.3 How do I
Up: 6 Getting Fancy
Previous: 6.1 I hear people
- Barnyard 5.1 can be used to process unified output files into a number of
formats, including output to a database for further analysis.
- SnortSnarf, a tool for producing HTML out of snort alerts for navigating
through these alerts.
- If you want to set up logging to a database you could try ACID. Some
documentation describing the current ACID functionality includes:
http://www.cert.org/kb/acid/
- You can manipulate the unified output files directly without a separate
database and browse/correlate them with Cerebus:
http://dragos.com/cerebus/
- For GUI front ends with simple log browsing, look at:
Next: 6.3 How do I
Up: 6 Getting Fancy
Previous: 6.1 I hear people
Nigel Houghton
2006-10-02
|
|
|