Ãâ·Ñ×¢²á ²é¿´ÐÂÌû |

Chinaunix

  ƽ̨ ÂÛ̳ ²©¿Í ÎÄ¿â
×î½ü·ÃÎÊ°å¿é ·¢ÐÂÌû
Â¥Ö÷: phiazat
´òÓ¡ ÉÏÒ»Ö÷Ìâ ÏÂÒ»Ö÷Ìâ

»ùÓÚSnortµÄÈëÇÖ¼ì²âϵͳ [¸´ÖÆÁ´½Ó]

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
71Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:45 |Ö»¿´¸Ã×÷Õß
5£®1£®2 µÚ¶þ²½£º°²×°MySQL\r\nÎÒ½¨ÒéÄãÓÃËæRedHat»òÆäËûLinux·¢Ðа渽´øµÄÈí¼þ°üÀ´°²×°MySQL£¬ÕâÊÇ×î¼òµ¥µÄ·½Ê½¡£MySQLͬʱҲÓÐÓÃÓÚWindowsƽ̨µÄ¡£µ±È»£¬ÄãÒ²¿ÉÒÔÔÚhttp://www.mysql.orgÀ´»ñµÃMySQL· ... Äʱºò²ÉÓÃÕâÖÖ·½Ê½¡£\r\n5.1.3 µÚÈý²½£ºÔÚMySQLÖн¨Á¢SnortÊý¾Ý¿â¡£\r\nÒ»µ©ÄãÍê³ÉÁ˱àÒëÖ§³ÖMySQLµÄSnort,ÄÇôÏÂÃæÒª×öµÄ¾ÍÊǽ¨Á¢Ò»¸öSnortÓÃÀ´¼Ç¼Êý¾ÝµÄÊý¾Ý¿âÁË¡£ÔÚ¿ªÊ¼Ê¹ÓÃMySQL֮ǰ£¬Ê×ÏÈҪȷ¶¨Êý¾Ý¿â·þÎñÆ÷ÉϵÄMySQLÔËÐÐÕý³£¡£Äã¿ÉÒÔÓÃps ¨Cef | grep mysqlÀ´²ì¿´£¬Èç¹ûÁбíÖÐÓÐMySQL½ø³Ì£¬ÄÇôÊý¾Ý¿â·þÎñÆ÷¾ÍÕýÔÚÔËÐС£Èç¹ûÄãÖ»ÓÐһ̨»úÆ÷£¬Äã¿ÉÒÔÔÚ°²×°SnortµÄ»úÆ÷ÉÏÔËÐÐMySQL·þÎñÆ÷¡£Ç°ÃæҲ˵¹ý£¬ÄãÒ²¿ÉÒÔÔÚ±ðµÄ»úÆ÷ÉÏÔËÐÐÊý¾Ý¿â·þÎñÆ÷¡£ÎªÁ˱¾ÊéÐðÊöµÄ·½±ã£¬ÎÒ½«ËùÓеIJ¿¼þ£¬°üÀ¨SnortºÍMySQL¶¼°²×°ÔÚͬһ̨»úÆ÷ÉÏÃæ¡£\r\nÄã¿ÉÒÔÔÚhttp://www.mysql.ortÉÏÏÂÔØMySQL· ... èµÄȨÏÞ¸³ÓèÓû§rr¡£\r\n¿Í»§¶Ë³ÌÐòmysqlÓÃÀ´Á¬½ÓÊý¾Ý¿â·þÎñÆ÷¡£SnortÊý¾Ý¿âµÄÃû³Æ¿ÉÒÔÓÃÈÎÒâµÄÃû×Ö£¬·ÃÎÊÊý¾Ý¿âµÄÓû§ÃûÒ²¿ÉÒÔ×ÔÓɶ¨Ò塣Ϊ±¾ÊéµÄÐðÊö·½±ã£¬ÎÒÃÇÔÚ´Ë´´½¨Ò»¸ö½Ð×ösnortµÄÊý¾Ý¿â£¬ºÍÒ»¸öÃûΪrrµÄÓû§À´·ÃÎÊÊý¾Ý¿â¡£¼Ù¶¨MySQL·þÎñÆ÷ÔËÐÐÔÚ±¾µØ£¬Í¨³£µÄÓÃÀ´´´½¨Êý¾Ý¿â²¢¼ì²éÆä״̬µÄmysqlÃüÁîÔËÐйý³ÌÈçÏÂËùʾ£º

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
72Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:45 |Ö»¿´¸Ã×÷Õß
[root@laptop]# mysql -h localhost -u root -p\r\nEnter password:\r\nWelcome to the MySQL monitor. Commands end with ; or \\g.\r\nYour MySQL connection id is 40 to server version: 3.23.36\r\nType \'help;\' or \'\\h\' for help. Type \'\\c\' to clear the buffer\r\nmysql> create database snort;\r\nQuery OK, 1 row affected (0.00 sec)\r\nmysql> use snort\r\nDatabase changed\r\nmysql> status\r\n--------------\r\nmysql Ver 11.13 Distrib 3.23.36, for redhat-linux-gnu (i386)\r\nConnection id: 41\r\nCurrent database: snort\r\nCurrent user: root@localhost\r\nCurrent pager: stdout\r\nUsing outfile: \'\'\r\nServer version: 3.23.36\r\nProtocol version: 10\r\nConnection: Localhost via UNIX socket\r\nClient characterset: latin1\r\nServer characterset: latin1\r\nUNIX socket: /var/lib/mysql/mysql.sock\r\nUptime: 1 hour 56 min 29 sec\r\nThreads: 1 Questions: 107 Slow queries: 0 Opens: 14 Flush\r\ntables: 1 Open tables: 7 Queries per second avg: 0.015\r\n--------------

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
73Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:45 |Ö»¿´¸Ã×÷Õß
mysql>\r\nÔÚÕâ¸ö¹ý³ÌÖÐÓõ½ÁËÏÂÃæµÄÃüÁ\r\nÃüÁî¡°mysql -h localhost -u root ¨Cp ¡±ÓÃÀ´½«mysql¿Í»§¶ËÁ¬½Óµ½±¾µØµÄÊý¾Ý¿â·þÎñÆ÷ÉÏÃæ¡£ÆäÖС°-u root¡±±íʾÓÃÀ´Á¬½ÓÊý¾Ý¿âµÄÓû§Ãû£¬¡°-p¡±ÓÃÀ´ÔÚÏÂÒ»ÐÐÊäÈëÓû§ÃÜÂë¡£µÇ¼ºó£¬Äã»á¿´µ½Ò»¸ö»¶Ó­ÐÅÏ¢£¬²¢µÃµ½¡°mysql>¡±Ìáʾ·û£¬ÕâÑùÄã¿ÉÒÔÖ´ÐÐÆäËûµÄÊý¾Ý¿â²Ù×÷ÃüÁî¡£\r\nÃüÁî¡°create database snort;¡±ÓÃÀ´ÔÚMySQL·þÎñÆ÷Öд´½¨Ò»¸öÃûΪsnortµÄÊý¾Ý¿â£¬ÄãÒ²¿ÉÒÔÓÃÆäËûÄãϲ»¶µÄÃû×Ö¡£\r\nÃüÁî¡°use snort¡±µÄ×÷ÓÃÊÇʹÓÃд´½¨µÄÊý¾Ý¿âsnort¡£\r\nÃüÁî¡°status¡±ÓÃÀ´ÏÔʾÊý¾Ý¿â·þÎñÆ÷µÄµ±Ç°×´Ì¬¡£Àý×ÓÖÐÏÔʾÁ˵±Ç°´ò¿ªµÄÊý¾Ý¿âÊÇsnort¡£\r\nÔÚMySQLÃüÁîÌáʾ·ûÏ£¬Äã¿ÉÒÔÓá°exit¡±ÃüÁîÀ´½áÊømysql¿Í»§¶Ë½ø³Ì¡£\r\n5.1.4´´½¨MySQLÓû§²¢ÊÚÓèȨÏÞºÍÉèÖÿÚÁî\r\nÔÚ·ÃÎÊSnortÊý¾Ý¿âµÄʱºò£¬ÎÒÃDz»½¨ÒéÓÃrootÓû§µÇ¼£¬Òò´Ë£¬ÄãÒª´´½¨Ò»¸öеÄÓû§£¬ÎÒµÄÐÂÓû§ÃûΪrr¡£ÏÂÃæµÄÃüÁîÓÃÀ´´´½¨ÃûΪrrµÄÓû§£¬Õâ¸öÃüÁîÒ²ÓÃÀ´¸øÓû§ÊÚÓè¶Ô±íºÍ¿âµÄ·ÃÎÊȨÏÞ¡£¡£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
74Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:45 |Ö»¿´¸Ã×÷Õß
CREAT£¬ÓÃÀ´´´½¨ÐµĶÔÏó¡£\r\nINSERT£¬ÓÃÀ´ÏòÊý¾Ý¿â²åÈëÊý¾Ý¡£\r\nDELETE£¬ÓÃÀ´´ÓÊý¾Ý¿âɾ³ýÊý¾Ý¡£\r\nUPDATE£¬ÓÃÀ´Ð޸ļǼ¡£\r\nSELECT£¬ÓÃÀ´ÏÔʾ²¢Ñ¡Ôñ¼Ç¼¡£\r\nÎÒÃÇÓÃËù´´½¨µÄÓû§À´·ÃÎÊSnortÊý¾Ý¿â£¬µ±ÄãÅäÖÃSnortʹÓÃÆäÊý¾Ý¿âÊä³öÄ£¿éµÄʱºò£¬ÔÚÅäÖÃÎļþsnort.confÖÐÒ²½«Óõ½Õâ¸öÓû§Ãû¼°Æä¿ÚÁî¡£\r\nmysql> grant CREATE,INSERT,DELETE,UPDATE,SELECT on snort.* to\r\nrr@localhost;\r\nQuery OK, 0 rows affected (0.00 sec)\r\nmysql>\r\n¶ÔÐÂÓû§µÄÊÚȨ½öÏÞÓÚSnortÊý¾Ý¿â£¬´´½¨Óû§²¢ÊÚȨÓÃÒ»ÌõÃüÁîÍê³É¡£\r\nÐÂÓû§ÐèÒªÒ»¸ö¿ÚÁÏÂÃæµÄÃüÁîΪÐÂÓû§Ö¸¶¨¿ÚÁî¡°rr78x¡±¡£\r\nmysql> set password for rr = password(\'rr78x\');\r\nQuery OK, 0 rows affected (0.00 sec)\r\nmysql>

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
75Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:45 |Ö»¿´¸Ã×÷Õß
ÔÚsnort.confµÄMySQLÊä³öÅäÖÃÖУ¬½«Óõ½Êý¾Ý¿âµÄÓû§ÃûºÍÃÜÂë¡£ÔÚsnort.confÎļþÖУ¬ÒÔϵÄ×Ö¶ÎÐèÒª½øÐÐÉèÖãº\r\nÊý¾Ý¿âÃû³Æ£¬Ò²¾ÍÊÇsnort\r\nÊý¾Ý¿âÓû§Ãû£¬Ò²¾ÍÊÇrr\r\nÊý¾Ý¿âÓû§¿ÚÁҲ¾ÍÊÇrr78x\r\nÔËÐÐÊý¾Ý¿â·þÎñÆ÷µÄÖ÷»ú£¬ÔÚÕâÀï¾ÍÊÇ°²×°SnortµÄͬһ̨»úÆ÷¡£Èç¹ûÊý¾Ý¿â·þÎñÆ÷ºÍSnort°²×°ÔÚͬһ̨»úÆ÷ÉÏ£¬Ö÷»úÃû¾ÍÊÇ¡°localhost¡±¡£\r\n5.1.5µÚÎå²½£ºÔÚSnortÊý¾Ý¿âÖд´½¨±í\r\nÔÚ´´½¨Ò»¸öSnortÊý¾Ý¿â²¢½¨Á¢Óû§ºó£¬ÏÖÔÚÓ¦µ±ÔÚÊý¾Ý¿âÖн¨Á¢Ò»Ð©±íÀ´´æ´¢Êý¾Ý¡£·Ç³£ÐÒÔË£¬ÎÒÃÇ¿ÉÒÔÔÚcontribĿ¼ÖÐÕÒµ½½Å±¾create_mysqlÀ´Íê³ÉÄãËùÐèÒªµÄËùÓÐ±í¡£Èç¹ûÄã´Óhttp://www.snort.orgÏÂÔØÁËsnortµ ... ÖÐÕÒµ½contribĿ¼¡£\r\nÏÂÃæµÄÃüÁîÓÃÕâ¸ö½Å±¾´´½¨snortÊý¾Ý¿âÖеÄËùÓÐ±í£º\r\n[root@laptop]# mysql -h localhost -u rr -p snort < contrib/\r\ncreate_mysql\r\nEnter password:\r\n[root@laptop]#

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
76Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:46 |Ö»¿´¸Ã×÷Õß
¸ÃÃüÁîµÄ¸÷¸öÑ¡ÏîµÄ½âÊÍÈçÏ£º\r\n¡°-h localhost¡±¸æËßmysql¿Í»§¶Ë³ÌÐòÊý¾Ý¿â·þÎñÆ÷Óë¿Í»§¶ËÔËÐÐÔÚͬһ̨»úÆ÷ÉÏ¡£\r\n¡°-u rr¡±ÓÃÀ´Ö¸¶¨µÇ¼Êý¾Ý¿â·þÎñÆ÷µÄÓû§Ãû\r\n¡°-p¡±±íʾÄ㽫ÔÚÏÂÒ»ÐÐÊäÈëÓû§rrµÄ¿ÚÁî\r\n ¡°snort¡±±íʾ½«±í´´½¨µ½ÃûΪsnortµÄÊý¾Ý¿âÖÐ\r\n×îºóÒ»²¿·Ö¡°<contrib./create_mysql¡±Ö¸¶¨Ò»¸öÎļþÃû£¬mysql¿Í»§¶Ë½«´ÓÕâ¸öÎļþÖжÁÈ¡ÃüÁî¡£\r\nÓÃÏÂÃæµÄÃüÁîÀ´²ì¿´Ëù´´½¨µÄ±í£º\r\n[root@laptop]# mysql -h localhost -u rr -p snort\r\nEnter password:\r\nReading table information for completion of table and column\r\nnames\r\nYou can turn off this feature to get a quicker startup with -A\r\nWelcome to the MySQL monitor. Commands end with ; or \\g.\r\nYour MySQL connection id is 46 to server version: 3.23.36\r\nType \'help;\' or \'\\h\' for help. Type \'\\c\' to clear the buffer\r\nmysql> show tables;\r\n+------------------+\r\n| Tables_in_snort |\r\n+------------------+\r\n| data |\r\n| detail |\r\n| encoding |\r\n| event |\r\n| icmphdr |\r\n| iphdr |\r\n| opt |\r\n| reference |\r\n| reference_system |\r\n| schema |\r\n| sensor |\r\n| sig_class |\r\n| sig_reference |\r\n| signature |\r\n| tcphdr |\r\n| udphdr |\r\n+------------------+\r\n16 rows in set (0.00 sec)

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
77Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:46 |Ö»¿´¸Ã×÷Õß
mysql>\r\n¡°show tables¡±ÃüÁîÓÃÀ´ÏÔʾµ±Ç°´ò¿ªµÄÊý¾Ý¿âÖÐËùÓÐµÄ±í¡£ÉϱßÁоÙÁËcreate_mysql½Å±¾´´½¨µÄ16¸ö±í£¬Ã¿¸ö±íÓÃÀ´¼Í¼¹ØÓÚSnort»î¶¯µÄ²»Í¬²¿·ÖµÄÐÅÏ¢£º\r\ndata±í°üº¬´¥·¢¸æ¾¯µÄÿ¸ö°üµÄÔغÉ\r\ndetail±í°üº¬Ëù¼Ç¼°üµÄÐÅÏ¢µÄÏêϸ³Ì¶È£¬Õâ¸ö±íÔÚĬÈÏÇé¿öÏÂÖ»°üº¬Á½ÁÐ,µÚÒ»ÁÐΪfast£¬µÚ¶þÁÐÊÇfull£¬±íʾ²»Í¬µÄ¼Ç¼ģʽ£¬ÕâÔÚÇ°ÃæÒѾ­×ö¹ý±íÊö¡£\r\nEncoding±íÏÔʾ¼Í¼°üµÄ±íÂíÐÎʽ£¬Ä¬ÈÏÇé¿öÓÐ3ÖÖ£ºhex,base64ºÍASCII¡£\r\nEvent±íÁоÙÁËËùÓеÄʼþ£¬²¢ÎªÕâЩʼþ´òÉÏʱ¼ä´Á¡£\r\nIcmphdr±íÖаüº¬Á˼Ǽµ½snortÊý¾Ý¿âÖÐicmp°üµÄÍ·²¿ÐÅÏ¢£¬°üÀ¨ICMPÀàÐÍ£¬±àÂ룬ID£¬ÐòÁкŵȵȡ£\r\nIphdr±íÖаüº¬Á˱»¼Ç¼µÄÊý¾Ý°üÖÐIPÍ·²¿µÄËùÓÐ×Ö¶ÎÐÅÏ¢£¬°üÀ¨IPÔ´ºÍÄ¿µÄµØÖ·£¬IPÍ·³¤¶È£¬TOSÖµ£¬TTLÖµµÈµÈ¡£\r\nOpt±íÖаüº¬ÁËһЩѡÏî¡£\r\nReference¼°reference_system±íÖаüº¬Á˹ØÓÚһЩÈëÇÖÐÐΪµÄ²Î¿¼ÍøÖ·£¬Äã¿ÉÒÔ´ÓÖлñµÃ¸ü¶àµÄÐÅÏ¢¡£\r\nSchema±íÏÔʾÁËÊý¾Ý¿âÄ£Ð͵İ汾¡£\r\nSensor±íÖаüº¬Á˼ǼÊý¾Ý¿âµÄ¸÷¸öSnort̽²âÆ÷µÄÏà¹ØÐÅÏ¢¡£Èç¹û½öÓÐÒ»¸öSnort̽²âÆ÷£¬Õâ¸ö±í¾ÍÖ»ÓÐÒ»ÅÅ¡£Èç¹ûÓжà¸ö̽²âÆ÷£¬Ôòÿ¸ö̽²âÆ÷Õ¼Ò»ÅÅ¡£\r\nSig_class°üº¬Snort¹æÔò²»Í¬¼¶±ðµÄÐÅÏ¢£¬ÀýÈç¡°attemptedrecon¡±,¡°misc-attack¡±µÈµÈ¡£\r\nSignature±íÖаüº¬Á˹ØÓÚ²úÉú¸æ¾¯µÄһЩÌØÕ÷µÄÐÅÏ¢¡£\r\nTcphdr±íÖаüº¬ÁËTCPÀàÐÍÊý¾Ý°üÖÐTCPÍ·²¿µÄÐÅÏ¢¡£\r\nUdphdr±íÖаüº¬ÁËUDPÀàÐÍÊý¾Ý°üÖÐUDPÍ·²¿µÄÐÅÏ¢£¬°üÀ¨Ô´ºÍÄ¿µÄ¶Ë¿Ú£¬³¤¶ÈºÍУÑéÂë¡£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
78Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:46 |Ö»¿´¸Ã×÷Õß
Èç¹ûÄãÏëÁ˽âÿ¸ö±íµÄ½á¹¹£¬Äã¿ÉÒÔÔÚ¿Í»§¶ËÖÐÏÔʾÿ¸ö±íµÄ¸÷¸ö×ֶΡ£ÏÂÃæµÄÃüÁîÓÃÀ´ÏÔʾiphdr±íµÄ½á¹¹£º\r\nmysql> describe iphdr;\r\n+----------+----------------------+------+-----+---------+-------+\r\n| Field | Type | Null | Key | Default | Extra |\r\n+----------+----------------------+------+-----+---------+-------+\r\n| sid | int(10) unsigned | | PRI | 0 | |\r\n| cid | int(10) unsigned | | PRI | 0 | |\r\n| ip_src | int(10) unsigned | | MUL | 0 | |\r\n| ip_dst | int(10) unsigned | | MUL | 0 | |\r\n| ip_ver | tinyint(3) unsigned | YES | | NULL | |\r\n| ip_hlen | tinyint(3) unsigned | YES | | NULL | |\r\n| ip_tos | tinyint(3) unsigned | YES | | NULL | |\r\n| ip_len | smallint(5) unsigned | YES | | NULL | |\r\n| ip_id | smallint(5) unsigned | YES | | NULL | |\r\n| ip_flags | tinyint(3) unsigned | YES | | NULL | |\r\n| ip_off | smallint(5) unsigned | YES | | NULL | |\r\n| ip_ttl | tinyint(3) unsigned | YES | | NULL | |\r\n| ip_proto | tinyint(3) unsigned | | | 0 | |\r\n| ip_csum | smallint(5) unsigned | YES | | NULL | |\r\n+----------+----------------------+------+-----+---------+-------+\r\n14 rows in set (0.00 sec)

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
79Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-10 23:46 |Ö»¿´¸Ã×÷Õß
mysql>\r\nÈç¹ûÄãÏëÁ˽â¹ØÓÚÊý¾ÝÈçºÎ´æ´¢µÄÏêϸÐÅÏ¢£¬Äã¿ÉÒÔÔÚhttp://www.incident.org/snortdb/ ²ì¿´Êý¾Ý¿âµÄÏêϸ½á¹¹¡£\r\n5.1.5.1 ´´½¨¸½¼Ó±í\r\nµ±ÄãÓÃһЩÆäËüµÄ³ÌÐòÓëSnortºÍÊý¾Ý¿âһͬ¹¤×÷£¬Ï£Íû½«¶Ë¿ÚºÅÓ³Éäµ½·þÎñÃû³ÆµÄʱºò£¬Ä㽫ÐèҪһЩ¸½¼ÓµÄÓ³ÉäÐÅÏ¢¡£ÀýÈ磬TCP¶Ë¿Ú23ÊÇÓÃÀ´TelnetµÄ£¬µ«ÊÇtcphar±íÖнö½ö°üº¬¶Ë¿ÚºÅÂ룬²¢Ã»ÓÐÏêϸµÄÃèÊö¡£Èç¹ûÄãÏ뽫ԴºÍÄ¿µÄ¶Ë¿Ú±íʾΪTelnet¶ø²»ÊÇÊý×Ö23ÕâÖÖÐÎʽµÄʱºò£¬ÄãÐèÒªÕâЩÐÅÏ¢¡£Snort¸½´øÁËÒ»¸ö¸½¼ÓµÄ½Å±¾£¬Ê¹ÄãÄܹ»´¦ÀíÕâÑùµÄÐÅÏ¢¡£ÔÚcontribĿ¼ÖÐÓÐÒ»¸ösnortdb-extra.zipµÄÎļþ£¬½«Ëü½âѹ£¬Äã¾Í¿ÉÒÔÓÃËüÀ´´´½¨¸½¼ÓµÄ±í£º\r\n[root@laptop]# mysql -h localhost -u rr ¨Cp snort < contrib/\r\nsnortdb-extra\r\nEnter password:\r\n[root@laptop]#\r\nÕâ¸öÃüÁî´´½¨ÁË3¸ö±í£ºprotocols,servicesºÍflags¡£ÕâЩ±íÖаüº¬Á˹ØÓÚ²»Í¬Ð­Òé¡¢·þÎñºÍ±ê־λµÄÏêϸÐÅÏ¢¡£¸Ã½Å±¾Í¬Ê±Ò²ÎªÕâЩ±í¹¹½¨Êý¾Ý¡£ÔÚsnortdb-extra½Å±¾ÖÐÓйØÓÚÕâЩ±íµÄ±íÊö¡£ÏÂÃæÊÇÕâЩ±íµÄÁÐ±í£º\r\nmysql> show tables;\r\n+------------------+\r\n| Tables_in_snort |\r\n+------------------+\r\n| data |\r\n| detail |\r\n| encoding |\r\n| event |\r\n| flags |\r\n| icmphdr |\r\n| iphdr |\r\n| opt |\r\n| protocols |\r\n| reference |\r\n| reference_system |\r\n| schema |\r\n| sensor |\r\n| services |\r\n| sig_class |\r\n| sig_reference |\r\n| signature |\r\n| tcphdr |\r\n| udphdr |\r\n+------------------+\r\n19 rows in set (0.01 sec)

ÂÛ̳»ÕÕÂ:
0
80Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-11 23:33 |Ö»¿´¸Ã×÷Õß
Æ¥ÈøÌùÍê¶àÉÙÁË£¿»¹Ã»½áÊøÄØ£¿
ÄúÐèÒªµÇ¼ºó²Å¿ÉÒÔ»ØÌû µÇ¼ | ×¢²á

±¾°æ»ý·Ö¹æÔò ·¢±í»Ø¸´

  

±±¾©Ê¢ÍØÓÅѶÐÅÏ¢¼¼ÊõÓÐÏÞ¹«Ë¾. °æȨËùÓÐ ¾©ICP±¸16024965ºÅ-6 ±±¾©Êй«°²¾Öº£µí·Ö¾ÖÍø¼àÖÐÐı¸°¸±àºÅ£º11010802020122 niuxiaotong@pcpop.com 17352615567
δ³ÉÄê¾Ù±¨×¨Çø
Öйú»¥ÁªÍøЭ»á»áÔ±  ÁªÏµÎÒÃÇ£ºhuangweiwei@itpub.net
¸ÐлËùÓйØÐĺÍÖ§³Ö¹ýChinaUnixµÄÅóÓÑÃÇ ×ªÔر¾Õ¾ÄÚÈÝÇë×¢Ã÷Ô­×÷ÕßÃû¼°³ö´¦

Çå³ý Cookies - ChinaUnix - Archiver - WAP - TOP