Monday 18 August 2014

Report for the period of 28th July till 18th Aug

I have been working on deploying Internal firewall. I was struggling with it as I observed the GUI was not working properly and I had to reset the configurations and set it up again. I finally could manage to get it working.

Besides, I have spent some time on installing Snort IDS. There weren't a lot of materials for Installing  the latest version of snort on Ubuntu 14.04. However, I could find a good resource to follow and could install it on my Ubuntu server. Now, I can use the pre-built rules as well as creating new rules using the following:

action protocol fromIP fromPort -> toIP toPort (msg:"message"; sid: any number;)
Now I am trying to install a web-interface to easily interpret the snort logs and statistics.