Skip to content
This repository has been archived by the owner on Jan 7, 2025. It is now read-only.

A test setup of Snort combining Vagrant and Jupyter to produce a fully executable documentation in the spirit of literate programming

License

Notifications You must be signed in to change notification settings

marcindulak/vagrant-snort-nfqueue-tutorial-centos7

Folders and files

NameName
Last commit message
Last commit date

Latest commit

c6a831e · Aug 25, 2017

History

34 Commits
May 27, 2017
May 3, 2017
May 27, 2017
Mar 1, 2017
Mar 10, 2017
Aug 25, 2017
Mar 1, 2017
Mar 1, 2017
Mar 1, 2017
Mar 1, 2017
Mar 1, 2017
Mar 1, 2017
Mar 1, 2017
Mar 1, 2017

Repository files navigation

Description

An example of snort++ (https://www.snort.org/snort3) network Intrusion Detection and Prevention System (IDS/IPS) deployed on an endpoint apache host.

In this setup the nfqueue (https://home.regit.org/netfilter-en/using-nfqueue-and-libnetfilter_queue/) iptables target is used to enable the intrusion prevention capability of snort, and the prometheus (https://prometheus.io/) time-series database is used for monitoring of snort alerts.

The setup combines vagrant (https://www.vagrantup.com) with jupyter (http://jupyter.org/) in order to achieve a "reproducible", executable documentation in the spirit of https://en.wikipedia.org/wiki/Literate_programming

Please go to vagrant-snort-nfqueue-tutorial-centos7.ipynb

Dependencies

None

License

BSD 2-clause

Todo

About

A test setup of Snort combining Vagrant and Jupyter to produce a fully executable documentation in the spirit of literate programming

Topics

Resources

License

Stars

Watchers

Forks

Packages

No packages published