Snort mailing list archives

Questions before installing Snort


From: Rayne <hjazz6 () ymail com>
Date: Tue, 14 Oct 2008 00:37:53 -0700 (PDT)

Hi all,
I'm new to Linux and Snort, and I'm trying to get all the information I need before I install Snort on my PC running 
Red Hat Enterprise Linux 5.

1)
I've read that Snort uses MySQL to store events and alerts. Does Red
Hat Enterprise Linux 5 already contain MySQL, or do I need to download
and install it myself? And just to check, if I do need to download
MySQL, do I download the non-RPM package "Linux (AMD64 / Intel EM64T)
5.0.67 (102.3M)" found at http://dev.mysql.com/downloads/mysql/5.0.html?

2)
I'm more interested in the pattern matching part of Snort and how fast
it runs, how many packets dropped and other basic statistics like that. Is
MySQL all I need before I install Snort? 

3) I've read that Snort now mainly uses a modified version of the
 Aho-Corasick algorithm for matching patterns against packet contents. Does it also use other pattern matching 
algorithms as well?

Thank you.

Regards,
Rayne


      
-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Current thread: