From 844fbe052e814a4662dedcf3a09fbfcdb814801a Mon Sep 17 00:00:00 2001 From: robiscool Date: Wed, 31 Mar 2010 19:02:32 -0700 Subject: snort-dev to snort, snort to snort-old, Release --- config/snort/snort.xml | 333 ++++++++++++------------------------------------- 1 file changed, 77 insertions(+), 256 deletions(-) (limited to 'config/snort/snort.xml') diff --git a/config/snort/snort.xml b/config/snort/snort.xml index 763f65eb..502438c2 100644 --- a/config/snort/snort.xml +++ b/config/snort/snort.xml @@ -46,73 +46,32 @@ Describe your package requirements here Currently there are no FAQ items provided. Snort - 2.8.4.1_5 - Services: Snort 2.8.4.1_5 pkg v. 1.6 - /usr/local/pkg/snort.inc + 2.8.5.3 + Services: Snort 2.8.5.2 pkg v. 1.19 + /usr/local/pkg/snort/snort.inc Snort Setup snort specific settings
Services
- /pkg_edit.php?xml=snort.xml&id=0 + /snort/snort_interfaces.php
snort - snort.sh + snort - Snort is the most widely deployed IDS/IPS technology worldwide.. + Snort is the most widely deployed IDS/IPS technology worldwide. - - Settings - /pkg_edit.php?xml=snort.xml&id=0 - - - - Update Rules - /snort_download_rules.php - - - Categories - /snort_rulesets.php - - - Rules - /snort_rules.php - - - Servers - /pkg_edit.php?xml=snort_define_servers.xml&id=0 - - - Blocked - /snort_blocked.php - - - Whitelist - /pkg.php?xml=snort_whitelist.xml - - - Threshold - /pkg.php?xml=snort_threshold.xml - - - Alerts - /snort_alerts.php - - - Advanced - /pkg_edit.php?xml=snort_advanced.xml&id=0 - - /usr/local/pkg/ + /usr/local/pkg/snort/ 077 http://www.pfsense.com/packages/config/snort/snort.inc - /usr/local/bin/ + /usr/local/www/snort/ 077 - http://www.pfsense.com/packages/config/snort/bin/barnyard2 + http://www.pfsense.com/packages/config/snort/snort_fbegin.inc /usr/local/bin/ @@ -123,256 +82,118 @@ /usr/local/bin/ 077 http://www.pfsense.com/packages/config/snort/bin/oinkmaster_contrib/oinkmaster.pl - + - /usr/local/www/ + /usr/local/bin/ 077 - http://www.pfsense.com/packages/config/snort/snort_download_rules.php + http://www.pfsense.com/packages/config/snort/bin/oinkmaster_contrib/snort_rename.pl - /usr/local/www/ + /usr/local/pkg/snort/ 077 - http://www.pfsense.com/packages/config/snort/snort_rules.php + http://www.pfsense.com/packages/config/snort/snort_gui.inc - /usr/local/www/ + /usr/local/pkg/pf/ 077 - http://www.pfsense.com/packages/config/snort/snort_rules_edit.php + http://www.pfsense.com/packages/config/snort/snort_dynamic_ip_reload.php - /usr/local/www/ + /usr/local/pkg/snort/ 077 - http://www.pfsense.com/packages/config/snort/snort_rulesets.php + http://www.pfsense.com/packages/config/snort/snort_whitelist.xml - /usr/local/pkg/ + /usr/local/www/snort/ 077 - http://www.pfsense.com/packages/config/snort/snort_whitelist.xml + http://www.pfsense.com/packages/config/snort/snort_alerts.php + + + /usr/local/www/snort/ + 077 + http://www.pfsense.com/packages/config/snort/snort_barnyard.php - /usr/local/www/ + /usr/local/www/snort/ 077 http://www.pfsense.com/packages/config/snort/snort_blocked.php - /usr/local/pkg/ + /usr/local/www/snort/ + 077 + http://www.pfsense.com/packages/config/snort/snort_define_servers.php + + + /usr/local/www/snort/ + 077 + http://www.pfsense.com/packages/config/snort/snort_download_rules.php + + + /usr/local/pkg/snort/ 077 http://www.pfsense.com/packages/config/snort/snort_check_for_rule_updates.php - /usr/local/www/ + /usr/local/www/snort/ 077 - http://www.pfsense.com/packages/config/snort/snort_alerts.php + http://www.pfsense.com/packages/config/snort/snort_help_info.php - /usr/local/pkg/pf/ + /usr/local/www/snort/ 077 - http://www.pfsense.com/packages/config/snort/snort_dynamic_ip_reload.php + http://www.pfsense.com/packages/config/snort/help_and_info.php + + + /usr/local/www/snort/ + 077 + http://www.pfsense.com/packages/config/snort/snort_interfaces.php + + + /usr/local/www/snort/ + 077 + http://www.pfsense.com/packages/config/snort/snort_interfaces_edit.php + + + /usr/local/www/snort/ + 077 + http://www.pfsense.com/packages/config/snort/snort_interfaces_global.php - /usr/local/pkg/ + /usr/local/www/snort/ 077 - http://www.pfsense.com/packages/config/snort/snort_advanced.xml + http://www.pfsense.com/packages/config/snort/snort_rules.php - /usr/local/pkg/ + /usr/local/www/snort/ 077 - http://www.pfsense.com/packages/config/snort/snort_define_servers.xml + http://www.pfsense.com/packages/config/snort/snort_rules_edit.php - /usr/local/pkg/ + /usr/local/www/snort/ 077 - http://www.pfsense.com/packages/config/snort/snort_threshold.xml + http://www.pfsense.com/packages/config/snort/snort_rulesets.php - /usr/local/pkg/ + /usr/local/www/snort/ 077 - http://www.pfsense.com/packages/config/snort/pfsense_rules/local.rules + http://www.pfsense.com/packages/config/snort/snort_preprocessors.php + + + /usr/local/etc/rc.d/ + 755 + http://www.pfsense.com/packages/config/snort/snort.sh - - Interface - iface_array - Select the interface(s) Snort will listen on. - interfaces_selection - 3 - lan - true - - - Memory Performance - performance - Lowmem and ac-bnfa are recommended for low end systems, Ac: high memory, best performance, ac-std: moderate memory,high performance, acs: small memory, moderateperformance, ac-banded: small memory,moderate performance, ac-sparsebands: small memory, high performance. - select - - - - - - - - - - - - Oinkmaster code - oinkmastercode - Obtain a snort.org Oinkmaster code and paste here. - input - 60 - - - - Snort.org subscriber - subscriber - Check this box if you are a Snort.org subscriber (premium rules). - checkbox - 60 - - - Block offenders - blockoffenders7 - Checking this option will automatically block hosts that generate a snort alert. - checkbox - 60 - - - Remove blocked hosts every - rm_blocked - Please select the amount of time hosts are blocked - select - - - - - - - - - - - - - - - - Update rules automatically - autorulesupdate7 - Please select the update times for rules. - select - - - - - - - - - - - - Whitelist VPNs automatically - whitelistvpns - Checking this option will install whitelists for all VPNs. - checkbox - - - Convert Snort alerts urls to clickable links - clickablalerteurls - Checking this option will automatically convert URLs in the Snort alerts tab to clickable links. - checkbox - - - Associate events on Blocked tab - associatealertip - Checking this option will automatically associate the blocked reason from the snort alerts file. - checkbox - - - Install emergingthreats rules. - emergingthreats - Emerging Threats is an open source community that produces fastest moving and diverse Snort Rules. - checkbox - - - - sync_package_snort(); - + - - sync_package_snort_reinstall(); - + + sync_snort_package(); + + + snort_postinstall(); + snort_deinstall(); - \ No newline at end of file + -- cgit v1.2.3