Scanning LAN for virus activity?

Kevin Spicer kevins at BMRB.CO.UK
Mon Mar 15 23:21:48 GMT 2004


On Mon, 2004-03-15 at 23:07, shrek-m at gmx.de wrote:
> snort
> http://www.snort.org/
>
> ntop
> http://www.ntop.org/
>
Or for a more pro-active approach
snort-inline
http://snort-inline.sourceforge.net/

And if you have lots of dark space on your LAN (e.g. you use a class B
address range but only allocate the first few hundred or thousand
addresses) then labrea is worth a look...
http://labrea.sourceforge.net/labrea-info.html






BMRB International
http://www.bmrb.co.uk
+44 (0)20 8566 5000
_________________________________________________________________
This message (and any attachment) is intended only for the
recipient and may contain confidential and/or privileged
material.  If you have received this in error, please contact the
sender and delete this message immediately.  Disclosure, copying
or other action taken in respect of this email or in
reliance on it is prohibited.  BMRB International Limited
accepts no liability in relation to any personal emails, or
content of any email which does not directly relate to our
business.



More information about the MailScanner mailing list