Snort Alerts

Snort Alerts

I am wanting to know if there is a way to monitor the alerts generated by Snort IDS that are being sent to a MySQL database. I have it sending them through syslog-ng for now so I can see them inside the Evenlog Analyzer, but it is not very efficient and not easy to read. Nor does the application separate the alerts based on level of severity. Is this something that will be done in future releases? Inother words, can I create a separate database within MySQL for snort, and have the Evenlog Analyzer look into that database to parse through the alerts? If you can make this work, your application will be nearly perfect for what I need!

Thanks,
Alan


                New to ADSelfService Plus?