SNORT is an Intrusion Detection System that sits on a network and watches all the network traffic. It looks for any suspicious activity that may be the result of hacking, viruses or malware activity, or any potentially dangerous virus code going across the network. SNORT can be configured into 3 modes: sniffing, packet logging, or intrusion detection.  The mode our project is designed for is intrusion detection.  The Ubuntu distribution of Linux was used for this project because it is widely supported and the current documentation available is up-to-date. Our project is intended to be used to monitor the workstations in two labs. As of this writing, we have successfully installed Snort, Pulled Pork for rule updating, and BASE to serve as a graphical interface for reporting.

 Student Team Members:  Cliff Blizzard, Nelson Soriano

Author