Snorter is an HTML reporting tool for the network IDS (intrusion detection system) Snort. Snorter connects to the MYSQL SGBD and queries it for events generated by Snort or any other device using SNORT-DB format.
Features:
The features of Snorter are :
* Making reports on events with sorting by IPSRC address, IPDST address, SIGNATURE, DATE, Sensor ID (if multiple sensors are used)
* Making summary report by correlating IPSRC address
* Investigating on events with whois queries, snortDB queries, ...
* Managing the database: deletion of events with the choice of the delete criteria (IPSRC, IPDST, SIGNATURE, DATE)