[140264] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: open source DPI suggestions?

daemon@ATHENA.MIT.EDU (Alex Brooks)
Sat May 7 07:59:50 2011

In-Reply-To: <1304768250.2110.0.camel@teh-desktop>
From: Alex Brooks <askoorb+nanog@gmail.com>
Date: Sat, 7 May 2011 12:59:06 +0100
To: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On Sat, May 7, 2011 at 12:37 PM, Tom Hill <tom@ninjabadger.net> wrote:
> On Fri, 2011-04-29 at 07:59 -0500, Kornelijus Survila wrote:
>> Snort (http://www.snort.org/) is also a nice IDS. They provide paid
>> and free rules/signatures.
>
> And if you would like 64bit and/or IPv6 support, try Suricata:
>
> http://www.openinfosecfoundation.org/
>

Another good open-source one with IPv6, Sourcefire rules support,
stateful firewall and filtering at traffic and web address level etc
is Vyatta (http://www.vyatta.org and http://www.vyatta.com).  They're
also rather nice routers if I do say so myself.

Do let us know which one you end up picking and how you go with it.

Cheers

Alex


home help back first fref pref prev next nref lref last post