• English (United Kingdom)
  • Viet Nam

ntsadmin

You are here: Home 3D System Intrusion Agent

Sourcefire Intrusion Agent for SNORT®

Sourcefire Intrusion Agents enable a Sourcefire Defense Center to aggregate event information from one or more open-source Snort sensors with data from Sourcefire IPS and Sourcefire RNA. This allows:

  • Sophisticated data analysis
  • Comprehensive reporting
  • Impact assessment and prioritization of events
  • Integration with third-party tools
  • Real-time response to actual attacks

Sourcefire Intrusion Agents transmit events generated by open source Snort sensors to the Sourcefire Defense Center, where they can be tightly integrated with the information provided by Sourcefire RNA to create a real-time, comprehensive view of the security events on your network.

System Requirements:
Snort® 2.4 or higher running on Red Hat Linux versions 7.2, 8.0, 9.0, or on Solaris versions 8.0 or 9.0
Snort 2.4.x, 2.6.x, or higher, running on:
  • Red Hat Enterprise Server 4.0 and Red Hat Linux 9.0
  • SUSE Linux 9.0
  • Fedora Core 4.0
  • FreeBSD 5.4
  • Solaris 8 and 9
Sourcefire Defense Center
 

Right

"Events requiring manual reviews have been reduced from over 20,000,000 per month down to approximately 2,000 per month. We have been able to reduce the time and number of staff who are dedicated to analyzing IDS data, re-utilizing these SOC resources for other activities."

- Network Security Analyst, Global 500 Software Provider