¥È¥Ã¥×¥Ú¡¼¥¸ » snort´ØÏ¢ » SnortSnarf¤Çsnort¤Î¥í¥°¤ò¥Á¥§¥Ã¥¯¤¹¤ë
¥«¥Æ¥´¥ê¡¼
Solaris10Âбþ¥³¡¼¥¹
¢£Solaris½é¿´¼Ô¸þ¤±
ÆþÌ祳¡¼¥¹¡¡
¥·¥¹¥Æ¥à´ÉÍý­µ¡¡¡Êx86ÈǤϤ³¤Á¤é¡Ë
¥·¥¹¥Æ¥à´ÉÍý­¶¡¡¡Êx86ÈǤϤ³¤Á¤é¡Ë
¥·¥¹¥Æ¥à´ÉÍý­·¡¡¡Êx86ÈǤϤ³¤Á¤é¡Ë
¥·¥¹¥Æ¥à´ÉÍý­¸¡¡¡Êx86ÈǤϤ³¤Á¤é¡Ë
¥Í¥Ã¥È¥ï¡¼¥¯´ÉÍý­µ
¥Í¥Ã¥È¥ï¡¼¥¯´ÉÍý­¶

¢£·Ð¸³¼Ô¡¦¾åµé¼Ô¸þ¤±
Solaris10¥È¥é¥Ö¥ë¥·¥å¡¼¥Æ¥£¥ó¥° ¡úNEW¡ú
¥»¥­¥å¥¢¥¤¥ó¥¿¡¼¥Í¥Ã¥È¥µ¡¼¥Ð¡¼¹½ÃÛ ¡úNEW¡ú
Solaris 10 ZFS ´ÉÍý
Solaris 10¥³¥ó¥Æ¥Ê(¥¾¡¼¥ó)
·Ð¸³¼Ô¸þ¤±Â®½¬¥³¡¼¥¹
Solaris10¿·µ¡Ç½¡Ê¥·¥¹¥Æ¥à´ÉÍýÊÔ¡Ë
Solaris10¿·µ¡Ç½¡Ê¥Í¥Ã¥È¥ï¡¼¥¯ÊÔ¡Ë
Solaris ¥Ñ¥Õ¥©¡¼¥Þ¥ó¥¹´ÉÍý
DTrace ¤ò»È¤Ã¤¿¥Ñ¥Õ¥©¡¼¥Þ¥ó¥¹¥Á¥å¡¼¥Ë¥ó¥°¤È ¥È¥é¥Ö¥ë¥·¥å¡¼¥Æ¥£¥ó¥°

Solaris 8/9 Âбþ¥³¡¼¥¹
¢£½é¿´¼Ô¸þ¤±
ǧÄê»î¸³Âкö¥³¡¼¥¹
UNIXÆþÌç
¥·¥¹¥Æ¥à´ÉÍý­µ
¥·¥¹¥Æ¥à´ÉÍý­¶
¥·¥¹¥Æ¥à´ÉÍý­·
¥Í¥Ã¥È¥ï¡¼¥¯´ÉÍý´ðÁÃ

¢£·Ð¸³¼Ô¡¦¾åµé¼Ô¸þ¤±
¥È¥é¥Ö¥ë¥·¥å¡¼¥Æ¥£¥ó¥°´ðÁÃ
OS¥»¥­¥å¥ê¥Æ¥£ for Solaris
Solaris ¥Í¥Ã¥È¥ï¡¼¥¯¿¯Æþ¸¡ÃÎ
Sun Ray ¥·¥¹¥Æ¥à¤Î¥¤¥ó¥¹¥È¡¼¥ë¤È´ÉÍý ¡úNEW¡ú
Sun Systems Fault Analysis Workshop
Crash Dump Analysis and the SunOS Kernel
Solaris¥¤¥ó¥¿¡¼¥Ê¥ë(ÆâÉô¹½Â¤)

¢£DNS,Apache,¥×¥í¥­¥·,¥á¡¼¥ë·Ï
Solaris10¥¤¥ó¥¿¡¼¥Í¥Ã¥È¥µ¡¼¥Ð¡¼¹½ÃÛ ¡úNEW¡ú
¥¤¥ó¥¿¡¼¥Í¥Ã¥È¥µ¡¼¥Ð¹½ÃÛ
¥¤¥ó¥¿¡¼¥Í¥Ã¥È¥µ¡¼¥Ð¥»¥­¥å¥ê¥Æ¥£

¢£¥Ü¥ê¥å¡¼¥à´ÉÍý¡¢¥¯¥é¥¹¥¿·Ï
Solaris Volume Manager ´ÉÍý
VERITAS Volume Manager4.0´ÉÍý
Sun Cluster 3.x ´ÉÍý
Sun Cluster 3.2 ´ÉÍý ¡úNEW¡ú

¢£¥Ï¡¼¥É¥¦¥§¥¢¡¢¥á¥ó¥Æ¥Ê¥ó¥¹·Ï
Sun Fire¥µ¡¼¥Ð¡¼´ÉÍý
Sun Fire 15K ¥µ¡¼¥Ð¡¼´ÉÍý

¢£¥·¥§¥ë¥×¥í¥°¥é¥ß¥ó¥°·Ï
C¥·¥§¥ë¥×¥í¥°¥é¥ß¥ó¥°
B¥·¥§¥ë/K¥·¥§¥ë¥×¥í¥°¥é¥ß¥ó¥°

SunJavaSystem¥³¡¼¥¹
¢£¥¢¥¤¥Ç¥ó¥Æ¥£¥Æ¥£´ÉÍý
¥¢¥¤¥Ç¥ó¥Æ¥£¥Æ¥£´ÉÍý¡Ê´ðËÜÊÔ¡Ë
¥¢¥¤¥Ç¥ó¥Æ¥£¥Æ¥£´ÉÍý¡Ê±þÍÑÊÔ¡Ë
¥¢¥¯¥»¥¹¥Þ¥Í¡¼¥¸¥ã¡¼
¢£LDAP¥µ¡¼¥Ð¡¢¥á¡¼¥ë¥µ¡¼¥Ð
¥Ç¥£¥ì¥¯¥È¥ê¥µ¡¼¥Ó¥¹ 5.x
¥á¥Ã¥»¡¼¥¸¥ó¥°¥µ¡¼¥Ó¥¹ 5.x

SnortSnarf¤Çsnort¤Î¥í¥°¤ò¥Á¥§¥Ã¥¯¤¹¤ë

snortsnarf¤Ïsnort¤Î½ÐÎϤ¹¤ë¥í¥°¤ò¤È¤Æ¤â¸«¤ä¤¹¤¤HTML¥Õ¥¡¥¤¥ë¤ËÊÑ´¹¤·¤Æ¤¯¤ì¤ë¥Ä¡¼¥ë¤Ç¤¹¡£

¤³¤ì¤Ë¤è¤êsnort¤Î¥í¥°¤ò¥Ö¥é¥¦¥¶¤«¤é´Êñ¤Ë¥Á¥§¥Ã¥¯¤¹¤ë¤³¤È¤¬¤Ç¤­¤ë¤è¤¦¤Ë¤Ê¤ê¤Þ¤¹¡£

¢£¡¡Á°Äó´Ä¶­¡¡
¡¡snort¥¤¥ó¥¹¥È¡¼¥ëºÑ¤ß (»²¾È: snort¤Î¥¤¥ó¥¹¥È¡¼¥ë)

¢£¡¡½àÈ÷
²¼µ­¥µ¥¤¥È¤ÇSnortSnarf-021111.1.tar.gz¤òÆþ¼ê¤¹¤ë¡£
http://www.silicondefense.com/snortsnarf/

¢£¡¡SnortSnarf¤Î¥¤¥ó¥¹¥È¡¼¥ë¡¦ÀßÄê

# ls
SnortSnarf-021111.1
# cd SnortSnarf-021111.1
# ls
COPYING                  Time-modules             nmap2html
Changes                  Usage                    sisr
README                   cgi                      snortsnarf.pl
README.SISR              include                  utilities
README.nmap2html         new-annotation-base.xml
# mkdir /usr/local/snortsnarf
# cp -pr include snortsnarf.pl /usr/local/snortsnarf
# cd /usr/local/snortsnarf
# ls
include        snortsnarf.pl

============================
Time¥â¥¸¥å¡¼¥ë¤Î¥¤¥ó¥¹¥È¡¼¥ë
============================

http://search.cpan.org/
¾åµ­¥µ¥¤¥È¤«¤é¥â¥¸¥å¡¼¥ëJulianDay.pm, ParseDate.pm, Timezone.pm¤ò¥À¥¦¥ó¥í¡¼¥É¤·²¼µ­¥Ç¥£¥ì¥¯¥È¥ê¤ËÇÛÃÖ¤¹¤ë¡£

# mkdir include/Time
# cp /tmp/*.pm include/Time
# ls include/Time
JulianDay.pm  ParseDate.pm  Timezone.pm

=================================
snortsnarfÍÑWeb¥Ç¥£¥ì¥¯¥È¥ê¤ÎºîÀ®
=================================

# mkdir /usr/local/apache2/htdocs/snort-snarf

===================
snortsnarf¤Î¼Â¹ÔÎã
===================

# ./snortsnarf.pl -d /usr/local/apache2/htdocs/snort-snarf /var/log/snort/alert¡¡/var/log/snort/portscan.log

-d ¤ÇºîÀ®¤¹¤ëindex.html¥Õ¥¡¥¤¥ë¤Î³ÊǼ¾ì½ê¤Î»ØÄê¡¢¤¢¤È¤Î¥Õ¥¡¥¤¥ë¤Ïsnort¤Î¥í¥°¥Õ¥¡¥¤¥ë¡ÊÊ£¿ô»ØÄê²Ä¡Ë

¢¨ snortsnarf¤Ïɬ¤º¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥ê¤Ç¼Â¹Ô¤¹¤ë¡£(¥¹¥¯¥ê¥×¥ÈÆâÉô¤Î¥Ñ¥¹¤Î»ö¾ð¤Ç¡¦¡¦¡¦)

==============================
snortsnarf¤Î¼«Æ°¼Â¹Ô¥¹¥¯¥ê¥×¥È
==============================

°Ê²¼¤Î¤è¤¦¤Ê¥¹¥¯¥ê¥×¥È¤òcron¤Ç¼«Æ°¼Â¹Ô¤µ¤»¤Æ¤ª¤¯¡£

# cat snortsnarf_run.sh
#!/bin/bash

cd /usr/local/snortsnarf
./snortsnarf.pl -d /usr/local/apache2/htdocs/snort-snarf /var/log/snort/alert
/var/log/snort/portscan.log


¤Á¤Ê¤ß¤Ë¥í¥°¥Õ¥¡¥¤¥ë¤¬Â礭¤¯¤Ê¤ë¤È¤«¤Ê¤êÉé²Ù¤¬¤«¤«¤ë¤Î¤Ç¤¢¤Þ¤êÉÑÈˤ˹Ԥï¤Ê¤¤Êý¤¬¤è¤¤¡£¤è¤ê¥ê¥¢¥ë¥¿¥¤¥à¤Ë¶á¤¤¥í¥°¤Î¥Á¥§¥Ã¥¯¤ò¤¹¤ë¾ì¹ç¤Ïmysql+ACID¹½À®¤Çsnort¤ÈÏ¢·È¤µ¤»¤ë¤Î¤¬°ìÈÌŪ¡£


¡¡°Ê¾å¤Çsnortsnarf¤Î¥¤¥ó¥¹¥È¡¼¥ë¡¦ÀßÄê¤Ï½ªÎ»¤Ç¤¹¡£
¤¢¤È¤Ï¥Ö¥é¥¦¥¶¤«¤ésnortsnarf¤¬ÊÑ´¹¤·¤¿index.html¥Õ¥¡¥¤¥ë¤Ë¥¢¥¯¥»¥¹¤·¤Æ³Îǧ¤·¤Þ¤·¤ç¤¦¡£
(¤³¤³¤Ç¤Ï¾ï¼±Åª¤ÊApache¤ÎÀßÄê¤Ï¾Ò²ð¤·¤Æ¤ª¤ê¤Þ¤»¤ó¤¬¡¢ÅöÁ³¡¢snort¤Î¥í¥°¤Ï´ÉÍý¼Ô°Ê³°¸«¤ë¤³¤È¤¬¤Ç¤­¤Ê¤¤¤è¤¦¤Ëǧ¾Ú¤Ê¤É¤Î¥¢¥¯¥»¥¹À©¸Â¤Ï¤·¤Æ¤ª¤­¤Þ¤·¤ç¤¦¡£)

¡Ú¥¢¥ó¥±¡¼¥È¡Û
¤³¤Îµ­»ö¤Ï¤¿¤á¤Ë¤Ê¤ê¤Þ¤·¤¿¤«¡©
¡¡¡¡¡¡¤Ï¤¤¡¡¡¡/¡¡¡¡¤¤¤¤¤¨

My Yahoo!¤ËÄɲÃ


¥³¥á¥ó¥È

http://9f03eaa6736b23f3de3c90d200d1d32b-t.ncvxui.info 9f03eaa6736b23f3de3c90d200d1d32b [url]http://9f03eaa6736b23f3de3c90d200d1d32b-b1.ncvxui.info[/url] [url=http://9f03eaa6736b23f3de3c90d200d1d32b-b2.ncvxui.info]9f03eaa6736b23f3de3c90d200d1d32b[/url] [u]http://9f03eaa6736b23f3de3c90d200d1d32b-b3.ncvxui.info[/u] d0dcc556412a086f2aaa2d6f3acefbbe

Posted by: Keyon : 2007年06月08日 14:33
¥³¥á¥ó¥È¤¹¤ë









̾Á°¡¢¥¢¥É¥ì¥¹¤òÅÐÏ¿¤·¤Þ¤¹¤«?