Snort 2.9.1 has been released, including Protocol Aware Flushing and IP Reputation Preprocessor
Aug 26, 2011, 13:00 (0 Talkback[s])
"Snort 2.9.1 introduces the following new capabilities:
- Protocol aware reassembly support for HTTP and DCE/RPC
preprocessors. Updates to Stream5 allowing Snort to more
intelligently inspect HTTP and DCE/RPC requests and responses. See
README.stream5 subsection related to Protocol Aware Flushing
(PAF).
- IP Reputation preprocessor, allowing Snort to blacklist or
whitelist packets based on their IP addresses. This preprocessor is
still in an experimental state, so please report any issues to the
Snort team.
Complete Story
Related Stories:
- Fwsnort: Application layer IDS/IPS with iptables(Jan 12, 2011)
- A Simple Snort Alert Parser(Sep 27, 2010)
- Intrusion Detection With Snort, ACIDBASE, MySQL, And Apache2 On Ubuntu 9.04(Sep 25, 2009)
- Snort open source IDS turns 10(Jun 01, 2009)
- Using Snort: Part 1: Installation and Configuration(Jun 10, 2008)
- When Snort is Not Enough(Jun 03, 2008)
- Award-Winning Snort Creator Roesch Shares Secrets of His Success(Nov 24, 2007)
- Breathe Easily: Protect Your Linux Box with Snort(Sep 12, 2007)