Author Topic: iptables, snort, fwsnort : how to get them to work together ?  (Read 777 times)

Offline melodie

  • Hero Member
  • *****
  • Posts: 5942
  • XMMP=Jabber, free instant messaging protocol !
    • PCLinuxOS Fr
Hi,

This man here asks a few questions about the above topic and would like to get one or more configuration files examples. He does not understand English. I don't know about firewalling and ips rules and match with firewalling.

Anyone can help here ? Fwsnort

Thanks,
Mélodie

melodie at swissjabber dot ch - IRC #pclinuxos-fr sur freenode

Offline djohnston

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 6227
  • I don't do Windows
Re: iptables, snort, fwsnort : how to get them to work together ?
« Reply #1 on: April 14, 2012, 12:04:40 AM »
melodie,

This has got to be one of the toughest questions you've asked. Snort is not an easy thing to manage. The first book I ever saw on it was several years ago at a Barnes and Noble bookstore. It was easily over 600 pages.

I checked your link, but I don't speak French. The snort documents page is here. There's a link to a pdf of the Snort user's manual, which is "only" 238 pages! The user translated guides are here. I would start with the French – Snort Installation Guide (pdf).

Actually, I'm getting a 403 Forbidden on that pdf link. You may want to email the author, Fathi Ben Nasr, (his email address is adjacent the link on the user translated guides page) and find out how to get access to the pdf link.
Bare metal                           VBox
AMD Athlon 7750 Dual-Core    Single core
4GiB RAM                              1GiB RAM
nVidia GeForce FX 5200          64MB video
LXDE 32bit                            KDE 64bit

Registered Linux User #416378

Offline melodie

  • Hero Member
  • *****
  • Posts: 5942
  • XMMP=Jabber, free instant messaging protocol !
    • PCLinuxOS Fr
Re: iptables, snort, fwsnort : how to get them to work together ?
« Reply #2 on: April 14, 2012, 10:41:17 AM »
melodie,

This has got to be one of the toughest questions you've asked. Snort is not an easy thing to manage. The first book I ever saw on it was several years ago at a Barnes and Noble bookstore. It was easily over 600 pages.

I checked your link, but I don't speak French. The snort documents page is here. There's a link to a pdf of the Snort user's manual, which is "only" 238 pages! The user translated guides are here. I would start with the French – Snort Installation Guide (pdf).

Actually, I'm getting a 403 Forbidden on that pdf link. You may want to email the author, Fathi Ben Nasr, (his email address is adjacent the link on the user translated guides page) and find out how to get access to the pdf link.


Hi djohnston,
In fact I could see in another topic that WindowsXP, if he is maybe not really keen in English, however manages quite well. Would you talk directly with him in the topic ? I have no knowledge about networks either, so it might be easier if you suggest him to write to the author. And all translation places are available to help in case of need : translate.google.com, babelfish... probably others do exist too.

Thanks for trying to help !
Mélodie

melodie at swissjabber dot ch - IRC #pclinuxos-fr sur freenode

Offline djohnston

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 6227
  • I don't do Windows
Re: iptables, snort, fwsnort : how to get them to work together ?
« Reply #3 on: April 14, 2012, 03:13:43 PM »

Would you talk directly with him in the topic ?


Done.
Bare metal                           VBox
AMD Athlon 7750 Dual-Core    Single core
4GiB RAM                              1GiB RAM
nVidia GeForce FX 5200          64MB video
LXDE 32bit                            KDE 64bit

Registered Linux User #416378

Offline melodie

  • Hero Member
  • *****
  • Posts: 5942
  • XMMP=Jabber, free instant messaging protocol !
    • PCLinuxOS Fr
melodie at swissjabber dot ch - IRC #pclinuxos-fr sur freenode

Offline djohnston

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 6227
  • I don't do Windows
Re: iptables, snort, fwsnort : how to get them to work together ?
« Reply #5 on: April 14, 2012, 03:53:05 PM »

Would you talk directly with him in the topic ?


Done.


Where ? 


I PMed him. I don't see any topic link except the one in French.
Bare metal                           VBox
AMD Athlon 7750 Dual-Core    Single core
4GiB RAM                              1GiB RAM
nVidia GeForce FX 5200          64MB video
LXDE 32bit                            KDE 64bit

Registered Linux User #416378

Offline melodie

  • Hero Member
  • *****
  • Posts: 5942
  • XMMP=Jabber, free instant messaging protocol !
    • PCLinuxOS Fr
Re: iptables, snort, fwsnort : how to get them to work together ?
« Reply #6 on: April 14, 2012, 04:43:41 PM »
I PMed him. I don't see any topic link except the one in French.

Oh ok. So he can answer to you in English here if he wants to...

Thanks,
Mélodie

melodie at swissjabber dot ch - IRC #pclinuxos-fr sur freenode