ITObserver: Block Network Attacks with SnortSAM
Sep 22, 2006, 10:30 (0 Talkback[s])
Re-Imagining Linux Platforms to Meet the Needs of Cloud Service Providers
[ Thanks to Jon for this link.
"SnortSAM is an open source agent that allows Snort intrusion
detection system to block attacking connections by reconfiguration
of access control lists on firewalls--stopping an attack in
progress. SnortSAM can order changes on firewalls such as
CheckPoint, Cisco PIX firewalls, Cisco routers, UNIX-based
firewalls and more.
"SnortSAM consists of two components: a patch for the Snort IDS
itself and the SnortSAM application, which can be run on a
dedicated SnortSAM server or on the Snort sensor..."