Snort IDS
::
updated 1.26.2004 Daniel Roelker, Marc Norton
The Snort IDS project page contains papers and code that
mnorton and djr have contributed to the Snort IDS. To date,
the most significant contributions have been the new Snort
2.0 detection engine, containing the rule optimizer, the
high-speed multi-rule detection engine, and the protocol
flow analyzer.
We've also contributed a performance monitor preprocessor
that measures the relative and absolute performance of Snort
on your machine and gives a breakdown of the network traffic
and flows that Snort is analyzing.
Coming soon is a new HTTP protocol decoder that handles the
evasions that are discussed in the HTTP IDS Evasions project.