Slashdot Mirror


CheckPoint Acquires Snort

bobdehnhardt writes "The Snort-announce list was burning with the news that CheckPoint has signed an agreement to acquire Sourcefire, the commercial arm of the Snort community. As part of the agreement, CheckPoint will "continue to develop and distribute Snort under the GPL, improve and document the program to stay on the cutting edge and expand the snort.org web site." Here is a message from Snort creator Marty Roesch."

4 of 118 comments (clear)

  1. while snort is a fine piece of software ... by Anonymous Coward · · Score: 1, Insightful

    I think its usefulness is very limited.

    It is nice to know I am protecting/monitoring my LAN from KNOWN attacks,
    is does very little to stop a determined attacker who can write
    their own shellcode and exploits.

    Which, if you hop on IRC now days, represents quite a few attackers.
    The people we made fun of long ago have aquired the skills to get around
    snort rather easily.

    So, rest at night, thinking you have protected your lan, while in reality
    you have not.

  2. Checkpoint and Linux by Anonymous Coward · · Score: 1, Insightful

    Checkpoint are not known for being too interested in providing versions of their software for Linux. Lack of a current Linux checkpoint vpn client is all that's keeping me running a (gack) Windows machine in my home..

    Soooo.... is Checkpoint Snort going to go Windows-only??

    Then again, maybe this heralds a new era of cooperation between Checkpoint and the non-Windows world.

  3. You also need a benchmark of legit activity. by khasim · · Score: 4, Insightful

    Everything happening on your network should be authorized by you. If you're worried about security, then you need to get some benchmarks of the legitimate traffic on your network so you can have the system watch for different patterns.

  4. Re:no big deal by Kevin+Burtch · · Score: 2, Insightful


    Closed-source penetration testing software?
    I sure won't be using that version... and I love nessus!

    --
    - Preferences: Solaris 10 (servers), Ubuntu (desktops), Solaris 11 (personal servers) -