LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 08-29-2005, 10:15 AM   #1
hywaydave23
LQ Newbie
 
Registered: Aug 2005
Posts: 17

Rep: Reputation: 0
Best distro to use for Snort


What would be the best and easiest Linux distro to use for Snort? Thanks.
 
Old 08-29-2005, 10:40 AM   #2
perfect_circle
Senior Member
 
Registered: Oct 2004
Location: Athens, Greece
Distribution: Slackware, arch
Posts: 1,783

Rep: Reputation: 53
I don't really get the question. Any distro will do. I'm using snort with slackware.
Arch linux comes with a precompiled snort package
http://www.archlinux.org/packages.ph...tupdate=&pp=50
if that matters at all, but I haven't tried it yet

knoppix-std also has snort installed and its a live cd distro:
http://www.knoppix-std.org/tools.html

Last edited by perfect_circle; 08-29-2005 at 10:43 AM.
 
Old 08-29-2005, 10:42 AM   #3
hywaydave23
LQ Newbie
 
Registered: Aug 2005
Posts: 17

Original Poster
Rep: Reputation: 0
I know any distro would do, but I'm going to be using it in a work environment. I'd probably want the one that's the most secure right out of the box. Of course I'd have to do some additional tweaking for security purposes.

Has anyone used Centos? I was thinking of using that.
 
Old 08-29-2005, 01:21 PM   #4
guild
Member
 
Registered: Aug 2003
Location: United States
Distribution: Auditor Linux
Posts: 64

Rep: Reputation: 15
that's actually a different question, right? i mean, snort should work with any distro. so what you are really asking is what is the most secure distro using a default install...
 
Old 08-29-2005, 03:23 PM   #5
hywaydave23
LQ Newbie
 
Registered: Aug 2005
Posts: 17

Original Poster
Rep: Reputation: 0
Yes, and I would like to know how Centos is? Is it fairly decent? I have not heard of it until today and saw that it was basically a clone of the Red Hat Enterprise version.
 
Old 08-29-2005, 05:35 PM   #6
guild
Member
 
Registered: Aug 2003
Location: United States
Distribution: Auditor Linux
Posts: 64

Rep: Reputation: 15
i'm sure that others can give a better suggestion, but if i was really worried about security, i guess i would start with NSA version of linux:

http://www.nsa.gov/selinux/

i have absolutely no experience with it though. i would hope some of the other regulars on this forum might make some suggestions.
 
Old 08-29-2005, 11:33 PM   #7
Capt_Caveman
Senior Member
 
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658

Rep: Reputation: 69
CentOS is based off Redhat, so it's going to have a number of services running by default that you should probably turn off if they're unnecessary. CentOS version 4 does include an SELinux implementation like Redhat with a targeted policy that protects several commonly used daemons (check the release notes for which ones). If you do decide to use CentOS, I would suggest doing a minimal installation and really gutting it.

There are a number of security-oriented distros like trustix and hardened gentoo that come with more secure configurations out of the box. Personally I would recommend using something you are famliar with and spending some time hardening it, rather than using a distro you are not comfortable with and making a configuration error. There are a number of general guides on securing/hardening servers in the Security References thread near the top of the forum that should help you out.

Last edited by Capt_Caveman; 08-29-2005 at 11:37 PM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Which Linux Distro better suited for Snort? jolu2000 Linux - Distributions 1 07-07-2004 08:14 PM
What is the best Distro to run Snort on? MastaYoda Linux - General 5 12-22-2003 01:24 PM
What distro is better for running snort? MastaYoda Linux - Networking 2 12-22-2003 01:07 PM
The Best Distro to run Snort MastaYoda Linux - Software 13 12-22-2003 01:05 PM
Looking for a sercure Linux distro w/ snort Thaidog Linux - Newbie 2 09-29-2002 02:54 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 01:03 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration