Intrusion Detection With BASE And Snort - Page 4
BASE web page setup
Open your favorite web browser and go to: http://www.example.com/base-1.2.5/setup
Click on Continue
step 1 of 5:
step 2 of 5:
step 3 of 5:
click on Submit Query
step 4 of 5:
To make the Graph's from BASE work you will also need to install Image_Color, Image_Canvas and Image_Graph.
pear install Image_Color
That it for BASE!
If you want you can chmod the base-1.2.5 dir back to 775:
chmod 775 base-1.2.5
You can also delete the snorttemp directory, and all the files in it.
To start SNORT and make BASE show you the Snort's logged info, you will need to run:
/usr/local/bin/snort -c /etc/snort/snort.conf -i eth0 -g root -D
Now wait some time and see all the Snort alerts show up in BASE.