LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 07-26-2010, 03:26 AM   #1
helptonewbie
Member
 
Registered: Aug 2006
Location: England Somewhere
Distribution: Mandriva, PCLinuxOS, Karoshi, Suse, Redhat, Ubuntu
Posts: 518

Rep: Reputation: 39
Question Recommended Snort Books


Hi All,

I'm looking to possibly need to make use of snort and its packet filtering/inspection abilities to help cover for PCI.

I've searched Amazon, but nothing really stand out, there is a new one (2007 - Snort Intrusion Detection and Prevention Toolkit), or slightly older ones... Managing Security with Snort & IDS Tools - 2004, Snort Cookbook - 2005, Snort for Dummies - 2004.

Now i'm tempted in just going for the latest one, but i'm completely new to snort so perhaps it needs another book like snort for dummies to get started ;-P

Cheers all for any comments,
M
 
Old 07-26-2010, 05:10 AM   #2
Noway2
Senior Member
 
Registered: Jul 2007
Distribution: Gentoo
Posts: 2,125

Rep: Reputation: 781Reputation: 781Reputation: 781Reputation: 781Reputation: 781Reputation: 781Reputation: 781
If you haven't taken a look at it yet, try "Intrusion Detection Systems with Snort". It is a little dated (2003), but it is available for free (download) and would be worth looking into before you spend money on a book.
 
Old 07-26-2010, 12:06 PM   #3
unixfool
Member
 
Registered: May 2005
Location: Northern VA
Distribution: Slackware, Ubuntu, FreeBSD, OpenBSD, OS X
Posts: 782
Blog Entries: 8

Rep: Reputation: 158Reputation: 158
Gonna play devil's advocate: most books on the subject are gonna be pretty much "money well spent", IMO, especially Snort Intrusion Detection and Prevention Toolkit. Since you mentioned PCI, I'm assuming this is for a workplace setup. If that's the case, a document dated 2003 may not be enough. I'd get the free ebook and the IRL book just for comparison purposes. I'd not do this on the cheap (you're gonna get what you pay for, in most cases), because if this is a rateable task (meaning that you'll see success or failure noted in a performance review), you might want to ensure you know as much as possible on Snort implementation.

Just my 2 cents...
 
Old 07-27-2010, 04:06 AM   #4
helptonewbie
Member
 
Registered: Aug 2006
Location: England Somewhere
Distribution: Mandriva, PCLinuxOS, Karoshi, Suse, Redhat, Ubuntu
Posts: 518

Original Poster
Rep: Reputation: 39
I have downloaded the 2003 PDF and will have a read through. I will most likely also buy a book as well perhaps the 2003 book will give me a good starting base and then the newest 2007 book for keeping it as new as possible.

Good tips! Thanks!!
 
Old 07-27-2010, 06:18 AM   #5
OlRoy
Member
 
Registered: Dec 2002
Posts: 306

Rep: Reputation: 86
The Snort manual is basically an almost 200 page book and it's updated.
 
1 members found this post helpful.
Old 07-27-2010, 08:10 AM   #6
helptonewbie
Member
 
Registered: Aug 2006
Location: England Somewhere
Distribution: Mandriva, PCLinuxOS, Karoshi, Suse, Redhat, Ubuntu
Posts: 518

Original Poster
Rep: Reputation: 39
Thanks, I have already got and downloaded that. Should have mentioned that i guess. But yes, i just think its nice to get the side from people implementing it with good examples etc etc, not always in the manuals.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Any recommended books for a beginner in Linux? linuz_man Linux - Newbie 13 06-16-2010 11:28 AM
Recommended Books??? jparker3 Linux - Newbie 8 05-11-2006 09:13 AM
recommended books for cert?? k0balT Linux - Certification 1 12-02-2005 03:37 AM
recommended books mrh7184 Linux - Newbie 2 11-23-2005 04:00 PM
Recommended Mandrake Books? HCLogo Mandriva 1 05-24-2004 12:52 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 09:18 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration