Ãâ·Ñ×¢²á ²é¿´ÐÂÌû |

Chinaunix

  ƽ̨ ÂÛ̳ ²©¿Í ÎÄ¿â
×î½ü·ÃÎÊ°å¿é ·¢ÐÂÌû
Â¥Ö÷: phiazat
´òÓ¡ ÉÏÒ»Ö÷Ìâ ÏÂÒ»Ö÷Ìâ

»ùÓÚSnortµÄÈëÇÖ¼ì²âϵͳ [¸´ÖÆÁ´½Ó]

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
61Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:42 |Ö»¿´¸Ã×÷Õß
4.2.7¼Ç¼µ½Êý¾Ý¿â\r\n\r\nSnort¿ÉÒÔÓÃÊý¾Ý¿âÀ´¼Ç¼ÈÕÖ¾ºÍ¸æ¾¯£¬Äã¿ÉÒÔÓÃOracle»òMySQLµÈ¶àÖÖÀàÐ͵ÄÊý¾Ý¿â£¬ÈçÏÂÃæµÄÀý×Ó£º\r\noutput database: log, mysql, user=rr password=rr \\\r\ndbname=snort host=localhost\r\nÏÂÒ»Õ½«ÏêϸÌÖÂÛÈçºÎÓ¦ÓÃÊý¾Ý¿â£¬ÏÂÃæÊÇÊý¾Ý¿âÊý¾ÝÄ£¿éµÄ¸ñʽ£º\r\noutput database: <log | alert>, <database_type>, \\\r\n<parameter_list>\r\nÕâÀïdatabase_typeÖ¸µÄÊÇÊý¾Ý¿âÀàÐÍ£¬Èçmysql£¬parameter_listÊÇһЩÏà¹Ø²ÎÊý£¬Óÿոñ·Ö¸ô¡£ÆäÖкܶà²ÎÊýÊÇ¿ÉÑ¡µÄ¡£\r\nÏÂÃæÊDzÎÊýµÄÁÐ±í£º\r\n \r\n²ÎÊý        ÃèÊö           \r\nHost        ÔËÐÐÊý¾Ý¿â·þÎñÆ÷µÄÖ÷»ú           \r\nPort        Êý¾Ý¿â·þÎñÆ÷µÄ¶Ë¿ÚºÅ           \r\nDbname        Êý¾Ý¿âµÄÃû³Æ           \r\nUser        Êý¾Ý¿âµÄÓû§Ãû           \r\nPassword        Óû§¿ÚÁî           \r\nSensor_name        Snort̽²âÆ÷µÄÃû³Æ           \r\nDetail        Full»òÕßfastģʽ£¬Ä¬ÈÏÊÇfull           \r\nEncoding        ¼Ç¼Êý¾ÝµÄASCII£¬hex»òÕßbase64µÄ±àÂë

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
62Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:43 |Ö»¿´¸Ã×÷Õß
4.2.8CSVÊý¾ÝÄ£¿é\r\nÀûÓÃCSVÄ£¿é£¬¿ÉÒÔ½«Êä³öÊý¾Ý±£´æΪCSVÎļþ£¬¿ÉÒÔ½«Êý¾Ýµ¼Èëµ½ÆäËûµÄÈí¼þÖУ¬ÈçExcelµÈµÈ¡£Æô¶¯CSVÄ£¿éµÄÓï¾äģʽÈçÏ£º\r\noutput csv: <filename> <formatting_options>\r\nÎļþĬÈϱ»´´½¨µ½/var/log/snort·¾¶ÏÂÃ棬ѡÏîÓÃÀ´¶¨ÒåÎļþÖд¢´æʲôÑùµÄÐÅÏ¢ÒÔ¼°ÒÔʲôÑùµÄ˳Ðò´¢´æ¡£\r\nÀýÈ磬ÄãÓÃdefault×÷Ϊ¸ñʽѡÏëÄÇô¸æ¾¯µÄËùÓвÎÊý½«±»´æ´¢ÔÚÎļþÖУº\r\noutput csv: csv_log default\r\nÊä³öÎļþµÄ¸ñʽÈçÏ£º\r\n07/23-18:24:03.388106 ,ICMP Packet with\r\nTTL=100,ICMP,192.168.1.100,,192.168.1.2,,0:2:3F:33:C6:98,0:E0:29:89:\r\n28:59,0x4A,,,,,,100,0,51367,60,20,8,0,,\r\n07/23-18:25:51.608106 ,GET\r\nmatched,TCP,192.168.1.2,1060,192.168.10.193,,0:E0:29:89:28:59,0:6:25\r\n:5B:29:ED,0x189,***AP***,0x55BCF404,0x8CBF42DD,,0x16D0,64,0,35580,37\r\n9,20,,,,\r\n07/23-18:25:52.008106 ,GET\r\nmatched,TCP,192.168.1.2,1061,192.168.10.193,,0:E0:29:89:28:59,0:6:25\r\n:5B:29:ED,0x1D0,***AP***,0x55628967,0x8D33FB74,,0x16D0,64,0,63049,45\r\n0,20,,,,\r\n07/23-18:25:52.478106 ,GET\r\nmatched,TCP,192.168.1.2,1061,192.168.10.193,,0:E0:29:89:28:59,0:6:25\r\n:5B:29:ED,0x1D0,***AP***,0x55628B01,0x8D33FC1B,,0x1920,64,0,63051,45\r\n0,20,,,,\r\n07/23-18:25:52.708106 ,GET\r\nmatched,TCP,192.168.1.2,1061,192.168.10.193,,0:E0:29:89:28:59,0:6:25\r\n:5B:29:ED,0x1EF,***AP***,0x55628C9B,0x8D33FCC1,,0x1D50,64,0,63053,48\r\n1,20,,,,\r\nÿһÐаüÀ¨ÏÂÃæµÄ×ֶΣº

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
63Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:43 |Ö»¿´¸Ã×÷Õß
Ãû³Æ        ÃèÊö           \r\nTimestamp        ʱ¼ä´Á°üº¬Ê±¼äºÍÈÕÆÚ           \r\nMsg        ¹æÔòÖÐmsg×Ö¶ÎÖеÄÐÅÏ¢           \r\nPorto        ЭÒé           \r\nSrc        Ô´IPµØÖ·           \r\nDst        Ä¿µÄIPµØÖ·           \r\nDstport        Ä¿µÄ¶Ë¿Ú           \r\nEthsrc        Ô´MACµØÖ·           \r\nEthdst        Ä¿µÄMACµØÖ·           \r\nEthlen        ÒÔÌ«ÍøÖ¡³¤¶È           \r\nTcpflags        Èç¹ûЭÒéΪTCPµÄ»°£¬ÕâÀï¾Í¼Ç¼±ê־λ           \r\nTcpseq        Tcp°üµÄÐòÁкŠ          \r\nTcpack        TcpµÄÓ¦´ðºÅ           \r\nTcplen        TCP°üµÄ³¤¶È           \r\nTcpwindow        TCP´°¿ÚµÄ´óС           \r\nTtl        IPÍ·²¿µÄTTLÖµ           \r\nTos        IPÍ·²¿µÄ·þÎñÀàÐÍÖµ           \r\nId        °üµÄIDÖµ           \r\nDgmlen        Êý¾Ý±¨µÄ³¤¶È           \r\nIplen        IPÍ·²¿³¤¶È           \r\nIcmptype        ICMPÍ·²¿µÄÀàÐͶΠ          \r\nIcmpid        ICMPÍ·²¿µÄID           \r\nIcmpseq        ICMPÐòÁкÅ

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
64Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:43 |Ö»¿´¸Ã×÷Õß
Äã¿ÉÒÔÓÃÉÙÁ¿µÄÑ¡ÏÀýÈ磺\r\noutput csv: csv_log timestamp,msg,src,dst\r\n¼Í¼µÄÈÕÖ¾ÈçÏ£º\r\n07/23-19:31:27.128106 ,GET matched,192.168.1.2,192.168.10.193\r\n07/23-19:31:27.278106 ,GET matched,192.168.1.2,192.168.10.193\r\n4.2.9ͳһ¼Í¼Êä³öÄ£¿é\r\nͬÒâÊä³öÊʺϸæË߼ͼ£¬Äã¿ÉÒÔ½«ÈÕÖ¾ºÍ¸æ¾¯´æ·Å²»Í¬µÄÎļþÖУ¬ÏÂÃæÊÇÅäÖøñʽ£º\r\noutput alert_unified: filename <alert_file>, \\\r\nlimit <max_size>\r\noutput log_unified: filename <log_file>, \\\r\nlimit <max_size>\r\nÎļþµÄ´óСÓÃM×Ö½Ú±íʾ£¬Äã¿ÉÒÔͬʱ¼Ç¼ÈÕÖ¾ºÍ¸æ¾¯£¬ÒòΪ¸æ¾¯Îļþ²¢²»°üº¬°üµÄÏêϸÐÅÏ¢¡£ÏÂÃæÊǸöÀý×Ó£º\r\noutput alert_unified: filename unified_alert, limit 50\r\noutput log_unified: filename unified_log, limit 200\r\nÈç¹û²»Ö¸¶¨Â·¾¶£¬ÄÇôÎļþ½«±»´´½¨ÔÚ/var/log/snortÖС£ÔÚÉÏÃæµÄÀý×ÓÖУ¬¸æ¾¯ÎļþµÄ´óС±»ÏÞÖÆÔÚ50M×Ö½Ú£¬ÈÕÖ¾ÎļþÊÇ200M×Ö½Ú¡£\r\nͳһÈÕÖ¾Óöþ½øÖƼǼÎʽò£¬Äã¿ÉÒÔÓÃһЩ¹¤¾ß¿ª²é¿´£¬±ÈÈçBarnyard¡£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
65Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:43 |Ö»¿´¸Ã×÷Õß
4.2.10SNMP TrapÊä³öÄ£¿é\r\nÕâ¸öÄ£¿é¿ÉÒÔÏòÍøÂç¹ÜÀíÖÐÐÄÊä³öSNMP trapÐÎʽµÄ¸æ¾¯£¬Ëü¿ÉÒÔ²úÉúSNMP µÚ¶þ°æºÍµÚÈý°æµÄtrapÐÅÏ¢¡£¸ñʽÈçÏ£º\r\noutput trap_snmp: alert, <sensor_ID>, {trap|inform} \\\r\n-v <snmp_version> -p <port_number> <hostname> <community>\r\nÏÂÃæÒ»ÐеÄ×÷ÓÃÊǽ«SNMP 2C°æµÄtrapÐÅÏ¢·¢µ½192.168.1.3µÄ162¶Ë¿Ú£¬¹²Í¬ÌåÃû³ÆΪpublic£º\r\noutput trap_snmp: alert, 8, trap -v 2c -p 162 \\\r\n192.168.1.3 public\r\nÈç¹ûÐèÒªÓÃSNMP£¬ÄÇôopensslµÄÖ§³Ö±ØÐëÒ²ÔÚ±àÒëSnortµÄʱºòÑ¡Ôñ¡£\r\n4.2.11 ¿Õ¼Ç¼Êý¾ÝÄ£¿é\r\nÕâ¸öÄ£¿é¿ÉÒÔµ¼Ö²»¼Ç¼¸æ¾¯£¬Ò»°ãÇé¿öϲ»ÍƼöʹÓá£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
66Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:43 |Ö»¿´¸Ã×÷Õß
4.3 BPF¹ýÂËÆ÷\r\nBPFÊÇÔÚÊý¾ÝÁ´Â·²ã¹ýÂËÊý¾Ý°üµÄÒ»ÖÖ»úÖÆ¡£»ùÓÚBPFµÄ¹ýÂËÆ÷ͨ³£ÓÃtcpdumpÕâÑùµÄ³ÌÐòÀ´¹ýÂËÄãÏ벶»ñµÄÊý¾Ý°ü¡£Äã¿ÉÒÔͬʱʹÓÃBPFºÍSnort¡£Èç¹ûÄãʹÓÃBPF¹ýÂËÆ÷£¬ÄÇôSnortÖ»ÄÜ¿´µ½Í¨¹ýBPF¹ýÂËÆ÷µÄ°ü¡£ÕâÑù¿ÉÒÔ¹ýÂ˵ôûÓÐÒâÒåµÄÊý¾Ý°ü£¬½ÚÊ¡CPUʱ¼ä¡£\r\nÄã¿ÉÒÔ½«BPF¹ýÂ˱í·ÅÔÚÒ»¸öÎļþÖУ¬ÔÚÆô¶¯SnortµÄʱºòÒýÓÃÕâ¸öÎļþ¡£¼ÙÉèÄãÏëÈÃSnort½ö½ö̽²âIPÍ·²¿µÄTOS²»µÈÓÚ0µÄ°ü£¬Äã¿ÉÒÔ´´½¨Ò»¸öÎļþbpf.txt£¬°üº¬ÈçϵÄÒ»ÐУº\r\nip[1] != 0\r\nÊý×Ö1±íʾµÄIPÍ·²¿¿ªÊ¼¼ÆËãµÄÆ«ÒÆÁ¿£¬1¾ÍÊÇTOSλ¡£\r\nÈ»ºó£¬ÓÃÏÂÃæµÄÃüÁîÆô¶¯Snort:\r\nsnort -F bpf.txt -c /opt/snort/etc/snort.conf

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
67Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:44 |Ö»¿´¸Ã×÷Õß
ËùÓеÄϵͳ¶¼ÐèҪijÖÖÀàÐ͵ĿÉÒÔÓÐЧµÄ¼Í¼µÄ»úÖÆ£¬ÕâÖÖ»úÖÆͨ³£ÊÇͨ¹ýºǫ́µÄÊý¾Ý¿âÀ´Íê³ÉµÄ¡£Snort¿ÉÒÔͬMySQL¡¢Oracle»òÕßÆäËûÈκÎÒ»ÖÖODBC¼æÈݵÄÊý¾Ý¿âÒ»Æð¹¤×÷¡£ÔÚÇ°ÃæµÄÕ½ÚÖУ¬ÄãÒѾ­Á˽âÁËÄã¿ÉÒÔͨ¹ýÊä³öÄ£¿é½«ÈÕÖ¾ºÍ¸æ¾¯±£´æÔÚÊý¾Ý¿âÖУ¬Õâ¶Ô±£´æÀúÊ·Êý¾Ý²¢²úÉú±¨¸æºÍ·ÖÎöÊý¾ÝÊǷdz£ÓÐÓõġ£ÀûÓÃÈçACID£¨½«ÔÚÏÂÒ»ÕÂÌÖÂÛ£©Ö®ÀàµÄ¹¤¾ß£¬Ò²¿ÉÒԵõ½¹ØÓÚÈëÇÖÌØÕ÷·Ç³£ÓÐÓõÄÐÅÏ¢£¬ÀýÈçÄã¿ÉÒԵõ½×îºó15´Î¹¥»÷µÄ±¨¸æ£¬ÆäÖеÄÐÅÏ¢°üÀ¨Á¬Ðø¹¥»÷ÄãµÄÍøÂçµÄÖ÷»ú£¬¹¥»÷²»Í¬Ð­ÒéµÄ·Ö²¼µÈµÈ¡£\r\nMySQLÊÇ¿ÉÒÔÃâ·ÑµÃµ½µÄÊý¾Ý¿âϵͳ£¬²¢ÇÒÄܹ»ÔÚLinuxºÍÆäËû²Ù×÷ϵͳÉϺܺõŤ×÷£¬Òò´Ë¶ÔÓÚSnortÀ´Ëµ£¬ÊÇÒ»ÖÖºÜ×ÔÈ»µÄÑ¡Ôñ¡£\r\nÄã¿ÉÒÔÔÚÔËÐÐSnortµÄ»úÆ÷ÉÏͬʱ°²×°MySQL·þÎñÆ÷£¬Èçͼ5-1Ëùʾ¡£\r\nÄãÒ²¿ÉÒÔ½«MySQL·þÎñÆ÷°²×°µ½ÁíÍâһ̨»úÆ÷ÉÏ£¬²¢½«SnortÈÕÖ¾¼Ç¼µ½Õą̂»úÆ÷£¬Èçͼ5-2Ëùʾ

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
68Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:44 |Ö»¿´¸Ã×÷Õß
ÄãÒ²¿ÉÒÔÓÃһ̨ÖÐÐÄMySQL·þÎñÆ÷¼Ç¼¶à¸öSnort¸ÐÓ¦Æ÷µÄÐÅÏ¢£¬Èçͼ5-3Ëùʾ¡£\r\n·½°¸µÄÑ¡ÔñÈ¡¾öÓÚÄãµÄÌض¨ÐèÇó¡£ÀýÈ磬ÄãÖ»ÓÐÒ»¸öSnort¸ÐÓ¦Æ÷£¬²¢ÇÒûÓÐÏÖÓеÄÊý¾Ý¿â·þÎñÆ÷£¬ÕâÑùÒ»¸öºÜ×ÔÈ»µÄ×ö·¨Êǽ«Êý¾Ý¿âºÍSnort°²×°ÔÚͬһ¸ö»úÆ÷ÉÏ¡£µ«Èç¹ûÄãÓжà¸öSnort»úÆ÷£¬¾ÍÓ¦¸Ã½¨Á¢Ò»¸öÖÐÐÄÊý¾Ý¿â·þÎñÆ÷£¬Èçͼ5-5Ëùʾ¡£\r\nÈç¹û´ÓÔ¶³ÌSnort»úÆ÷µÇ¼µ½¶ÀÁ¢µÄÊý¾Ý¿â·þÎñÆ÷ÉÏ£¬ÔÚ´«ÊäÊý¾ÝµÄʱºò¿ÉÒÔ²»²ÉÈ¡°²È«´ëÊ©£¬Ò²¿ÉÒÔ²ÉÓÃijÖÖ¼ÓÃÜÊֶΡ£ÀûÓð²È«ËíµÀ£¬ËùÓÐÔÚSnort»úÆ÷ºÍÊý¾Ý¿â·þÎñÆ÷Ö®¼ä´«ÊäµÄÊý¾Ý¶¼½«±»¼ÓÃÜ£¬ÕâÖÖÊÖ¶ÎÒ²¿ÉÒÔÓÃÓÚ´©Ô½·À»ðǽµÄÇé¿ö£¬ÒòΪÕâʱÄã¿ÉÒÔÀûÓ÷À»ðǽÒѾ­´ò¿ªµÄ¶Ë¿Ú¡£\r\nÔÚ½«SnortÊý¾Ý¼Ç¼µ½MySQLÊý¾Ý¿â֮ǰ£¬Ä㽨Á¢Ò»¸ö¿â¡£½¨Á¢Êý¾Ý¿âºó£¬±ØÐëҪΪÊý¾Ý¿â´´½¨±íÓÃÀ´¼Ç¼SnortÊý¾Ý¡£Äã¿ÉÒÔÔÚhttp://www.incident.org/snortdb/ ... 潫»á¶Ô´Ë×ö³ö˵Ã÷¡£\r\nѧϰÍê±¾Õºó£¬Ä㽫¿ÉÒÔ°²×°SnortºÍMySQL²¢½«ËùÓеÄSnort»î¶¯¼Ç¼µ½Êý¾Ý¿âÖС£ÄãÒ²½«Á˽âÈçºÎÓÃÖÐÐÄÊý¾Ý¿â·þÎñÆ÷¼Í¼¶à¸öSnort»úÆ÷µÄÊý¾Ý¡£±¾ÕµÄ×îºó²¿·Ö½«ÌṩÓð²È«ËíµÀÀ´¹ÜÀíSnortºÍÔ¶³ÌÊý¾Ý¿â·þÎñÆ÷¼ä´«ÊäͨµÀ°²È«µÄÐÅÏ¢¡£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
69Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:44 |Ö»¿´¸Ã×÷Õß
5£®1ʹSnortÓëMySQL¹²Í¬¹¤×÷\r\nΪʹSnortÓëMySQL¹²Í¬¹¤×÷£¬Óм¸¸öÊÂÇéÐèÒª×ö¡£ÏÂÃæÊǽ¨Á¢Snort-MySQLϵͳµÄ²½Öè¡£¹ØÓÚÿ¸ö²½ÖèµÄÏêϸÐÅÏ¢½«ÔÚ±¾ÕµĺóÃæ½éÉÜ¡£\r\n±àÒëSnortʹ֧֮³ÖMySQL²¢°²×°£¬²¢²âÊÔһЩ¸æ¾¯ÒÔÈ·ÐÅSnort¹¤×÷Õý³£¡£ÔÚµÚ2ÕÂÒѾ­ÐðÊö¹ý£¬ÄãÐèÒªÔÚÔËÐÐconfigure½Å±¾µÄʱºò¼ÓÉÏ¡ªwith-mysqlµÄÃüÁîÐвÎÊý¡£\r\n°²×°MySQL²¢ÓÃmysql¿Í»§¶ËÀ´È·¶¨Êý¾Ý¿â¿ÉÒÔÕý³£¹¤×÷¡£\r\nÔÚMySQL·þÎñÆ÷Öд´½¨Ò»¸öÊý¾Ý¿â£¬ÎÒ½«Õâ¸öÊý¾Ý¿âÃüÃûΪsnort£¬ÄãÒ²¿ÉÒÔ½ÐËüÆäËûµÄÃû×Ö¡£±¾ÕµĺóÃ潫¶Ô´Ë½øÐÐÏêϸÌÖÂÛ¡£\r\nΪÊý¾Ý¿â´´½¨Ò»¸öÓû§¼°¿ÚÁSnort½«ÓÃÕâ¸öÓû§ÃûÀ´¼Ç¼Êý¾Ý¡£\r\nÓÃsnort·Ö·¢°üµÄcontribĿ¼ÏÂÃæµÄ½Å±¾À´ÎªÊý¾Ý¿â´´½¨±í¡£¡£\r\nÐÞ¸Äsnort.conf£¬Ê¹Êý¾Ý¿âÄ£¿éÆð×÷Ó㬱¾ÕµĺóÃ潫¶Ô´Ë½øÐÐÌÖÂÛ¡£ÔÚ´ËÄ㽫Óõ½¸Õ¸Õ½¨Á¢µÄÊý¾Ý¿âµÄÃû³ÆºÍÓû§Ãû¼°¿ÚÁî¡£¡£\r\nÖØÐÂÆô¶¯Snort£¬Èç¹ûÒ»ÇÐÕý³££¬Snort½«¿ªÊ¼ÏòÊý¾Ý¿â¼Ç¼Êý¾Ý¡£\r\n²úÉúһЩ¸æ¾¯²¢ÓÃmysql¿Í»§¶Ë³ÌÐòÀ´È·¶¨¸æ¾¯Òѱ»¼Í¼¡£\r\n±¾ÕµÄʣϲ¿·Ö½«½âÊÍÈçºÎʵÏÖÕâЩ²½Ö裬ÏÂÒ»Õ½«ÌÖÂÛACIDµÄÓ¦Ó㬴Ëʱ±¾ÕÂÄã×öµÄÊÂÇé²ÅÄܹ»µÃµ½Êµ¼ÊµÄÓ¦ÓüÛÖµ¡£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
70Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:44 |Ö»¿´¸Ã×÷Õß
5.1.1 µÚÒ»²½£ºÊ¹SnortÖ§³ÖMySQLµÄ±àÒë·½·¨\r\nÈç¹ûÄãÐèҪʹSnortÖ§³ÖMySQLÊý¾Ý¿â£¬ÄÇôÄã±ØÐëÔÚ±àÒëµÄʱºò´øÉÏ¡ªwith-mysqlµÄ²ÎÊý¡£ÔÚµÚ¶þÕÂÖУ¬ÎÒÃÇÒѾ­ÐðÊö¹ýÈçºÎÓÃconfigure½Å±¾À´×öÕâÑùµÄÊÂÇé¡£\r\nµäÐ͵Äconfigure½Å±¾ÃüÁîÐÐÔËÐз½Ê½ÈçÏÂËùʾ£º\r\n./configure --prefix=/opt/snort --with-mysql=/usr/lib/mysql\r\nÎÒ½¨ÒéÄãÔÚÔËÐÐconfigure½Å±¾µÄʱºò£¬Í¬Ê±¼ÓÈëÆäËû×é¼þµÄÖ§³Ö£¬ÈçSNMPµÈ£¬ËüÃÇÒ²ÊǷdz£ÓÐÓõġ£ÔÚ±àÒëµÄʱºò£¬MySQLµÄϵͳ¿âÎļþ±ØÐëÔÚ/usr/lib/mysqlÖдæÔÚ²ÅÄܳɹ¦¡£ÏêϸÐÅÏ¢¿ÉÒÔÔÚµÚ¶þÕÂÖвéÔÄ
ÄúÐèÒªµÇ¼ºó²Å¿ÉÒÔ»ØÌû µÇ¼ | ×¢²á

±¾°æ»ý·Ö¹æÔò ·¢±í»Ø¸´

  

±±¾©Ê¢ÍØÓÅѶÐÅÏ¢¼¼ÊõÓÐÏÞ¹«Ë¾. °æȨËùÓÐ ¾©ICP±¸16024965ºÅ-6 ±±¾©Êй«°²¾Öº£µí·Ö¾ÖÍø¼àÖÐÐı¸°¸±àºÅ£º11010802020122 niuxiaotong@pcpop.com 17352615567
δ³ÉÄê¾Ù±¨×¨Çø
Öйú»¥ÁªÍøЭ»á»áÔ±  ÁªÏµÎÒÃÇ£ºhuangweiwei@itpub.net
¸ÐлËùÓйØÐĺÍÖ§³Ö¹ýChinaUnixµÄÅóÓÑÃÇ ×ªÔر¾Õ¾ÄÚÈÝÇë×¢Ã÷Ô­×÷ÕßÃû¼°³ö´¦

Çå³ý Cookies - ChinaUnix - Archiver - WAP - TOP