Download List

项目描述

Snort is a network intrusion detection and prevention system. It is the most widely deployed technology of its kind in the world. It performs detection using a variety of methods including rules-based detection, anomaly detection, and heuristic analysis of network traffic. Its rules language is open source and available to the public as well.

系统要求

System requirement is not defined
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2012-12-08 09:19
2.9.4.0

IPv6,文件 API 和文件处理、 地址空间 ID 来跟踪血腥 & 流连接,使用改进的整合后分析触发 PPM 的数据包数据的日志记录、 IPv6 与 PPPoE,和更多的解码。
标签: Minor
Consolidation of IPv6, file API and improvements to file processing, use of address space ID for tracking Frag & Stream connections, logging of packet data that triggers PPM for post-analysis, decoding of IPv6 with PPPoE, and more.

2012-08-11 07:35
2.9.3.1

检查 TCP RST 标志以防止此发布修补程序发送重置重置与内联和积极的反应,数据包更新进行哈希处理的内部存储为 64 位平台的规则选项检查唯一性,从解析 snort.conf 内存和一些小的内存泄漏的地址中删除重复副本时。请注意使用新的 PGP 密钥 (这用以前的密钥签名的) 签署了 2.9.3.1 和更高版本的软件包。
标签: Minor bugfixes
This release fixes a check for TCP RST flags to prevent sending resets to reset packets with inline and active responses, updates hashing for internal storage of rule options for 64bit platforms when checking uniqueness to remove duplicate copies in memory and addresses some small memory leaks from parsing snort.conf. Please note that 2.9.3.1 and later packages are signed with a new PGP key (which is signed with the previous key).

2012-07-21 07:14
2.9.3.0

Flowbit 规则选项,dcerpc2 和信誉预处理器的更新。一种新动态输出的插件体系结构的 API。各种更新和改进 http_inspect、 SMTP mempool 拨款,以及电子邮件的附件处理。pflog v4 支持已被添加到数据包解码器。已修复的多个 unified2 警报和重新组装数据包日志记录。编译器警告清理跨多个平台。所有数据库输出已删除的支持。
标签: Minor, Minor bugfixes, new features
Updates to the flowbit rule option, dcerpc2, and reputation preprocessors. A new dynamic output plugin architecture API. Various updates and improvements to http_inspect, SMTP mempool allocations, and email attachment processing. pflog v4 support has been added to packet decoders. Logging of multiple unified2 alerts with reassembled packets has been fixed. Compiler warning cleanup across multiple platforms. All database output support has been removed.

2012-05-17 21:20
2.9.2.3

预处理器 GTP 被更新,以更好地处理 GTPv1 数据。预处理器 DNP3 现在有更严格的数据包检查。检查在重组缓冲区中已有所改善。PCRE 规则选项处理被固定,防止出现与 libpcre 8.30 和某些规则问题。如果是未定义的目标根据协议,dcerpc2 不再中止重组。
标签: Minor
The GTP preprocessor was updated to better handle GTPv1 data. The DNP3 preprocessor now has stricter packet checking. Checking in the reassembly buffer was improved. PCRE rule option processing was fixed to prevent issues seen with libpcre 8.30 and certain rules. dcerpc2 no longer aborts reassembly if the target-based protocol is undefined.

2012-03-29 06:40
2.9.2.2

HTTP 查阅、 处理 TCP 会话清理与 Rst 和其他 TCP 流的更新状态跟踪,积极响应向碎片化的 IPv6 通信量和反应页配置,和 SIP 预处理器和状态跟踪的改进到 SMB 在预处理器时缺少 dcerpc2 加工上一届会议的数据包。
标签: Minor
Updates to HTTP Inspect, stream handling for TCP session cleanup with RSTs and other TCP state tracking, active responses to fragmented IPv6 traffic and to the react page configuration, and SIP preprocessor and state tracking improvements to SMB processing in the dcerpc2 preprocessor when missing packets on a session.

Project Resources