Установка Barnyard2

Linux > Установка Barnyard2
15.12.2014 17:23:23


Наиболее часто встречающиеся слова в статье:

[install] [apt-get] [libpcre3] [libpcre3-dbg] [libpcre3-dev] [build-essential] [autoconf] [automake] [libtool] [libpcap-dev]


Статья:

apt-get install libpcre3 libpcre3-dbg libpcre3-dev 
            build-essential autoconf automake libtool 
            libpcap-dev libnet1-dev mysql-client libdaq-dev libdnet libdumbnet-dev libdnet-dev  libmysqld-dev git-core
    apt-get install dh-autoreconf libpcap-dev
  1. в UBUNTU cd /usr/include && ln -s dumbnet.h dnet.h
  2. cd /usr/lib && libdumbnet.so libdnet.so
cd /usr/src
git clone https://github.com/firnsy/barnyard2.git

cd barnyard2
sudo autoreconf -fvi -I ./m4
sudo ./configure --with-mysql --with-mysql-libraries=/usr/lib/x86_64-linux-gnu && make && sudo make install

configure Suricata ......

cp ./etc/barnyard2.conf /etc/suricata/

Edit the barnyard2 conf file and set the following parameters :

config reference_file:      /etc/suricata/reference.config
config classification_file: /etc/suricata/classification.config
config gen_file:            /etc/suricata/rules/gen-msg.map
config sid_file:            /etc/suricata/rules/sid-msg.map
.....
.....
output database: log, mysql, user=snorbyuser password=PASSWORD123 /
   dbname=snorby host=192.168.1.111 sensor_name=sensor1