How to Read Snort Alerts
Snort is an open source hacker intrusion tool for Windows, Linux and OSX platforms designed to help prevent a network from being hacked. If you are running the Snort program on your computer, you have access to reports and alerts on the program that let you know when somebody has gained access to your computer network. You don’t have to be a computer genius to read the alerts. You can do it with just a few clicks of the mouse.
Instructions
-
-
1
Boot the Snort program from your programs list. Once the program boots, it will immediately grab packets.
-
2
Load the “Terminal” from the programs menu on your system.
-
-
3
Type “tcpdump –rsnort.log.xxx” into the Terminal and press “Enter.”
-
4
Wait for the log to export to your desktop.
-
1