Skip to content
This repository has been archived by the owner on Apr 16, 2021. It is now read-only.
Doug Burks edited this page May 20, 2015 · 31 revisions
  • Developed by Dustin Webber

  • Web 2.0, Ajax, Ruby-on-Rails

  • Snorby has its own MySQL database (separate from the Sguil and ELSA databases). That database only stores NIDS alerts from Snort or Suricata.

  • You can pivot from Snorby to CapME to access full packet capture or pivot to ELSA for related logs (Bro logs, OSSEC logs, syslog).

  • For more information, please see:
    https://www.snorby.org/

Clone this wiki locally