[Honeywall] honeywall 1.4 system update, hflow, snort, problems

Kristen Eisenberg kristen.eisenberg at yahoo.com
Mon Oct 10 17:55:40 CDT 2011


Hi,
I am doing a project about Virtual Honeynets. One of the main aims of it 
is to design and implement laptop based detection system based on 
virtual honeynet (Honeywall roo CDROM). Its main role is to analyze LAN 
traffic and alert.

One of the problems I have come across are out-of-date snort rules. 
roo-1.4 is based on snort 2.6 but rules for are not available for this 
version. 2.8.6.1 is the lowest version available (Jan 2011).

What I have done so far:
- Hwall was successfully updated using CentOS 5.5 repos,
- compiled and installed snort 2.8.6
- installed new set of rules 2.8.6.1 using oinkmaster


Kristen Eisenberg
Billige Flüge
Marketing GmbH
Emanuelstr. 3,
10317 Berlin
Deutschland
Telefon: +49 (33)
5310967
Email:
utebachmeier at
gmail.com
Site:
http://flug.airego.de
- Billige Flüge vergleichen
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://public.honeynet.org/pipermail/honeywall/attachments/20111010/13108d71/attachment.html 


More information about the Honeywall mailing list