1 安装环境
操作系统:centos7 64位
2 安装相关依赖项
(1)安装bison flex
sudo yum install bison flex
(2)安装 libpcap
wget http://www.tcpdump.org/release/libpcap-1.7.4.tar.gz
tar -xzvf libpcap-1.7.4.tar.gz
cd libpcap-1.7.4
./configure
sudo make && make install
sudo cp /usr/local/lib/libpcap.* /usr/lib
如果执行sudo 提示权限不够 切换到root用户
(3)安装 daq
wget https://www.snort.org/downloads/snort/daq-2.0.6.tar.gz
tar -xvzf daq-2.0.6.tar.gz
cd daq-2.0.6
./configure
sudo autoreconf -ivf
sudo make && make install
(4)安装 libpcre
sudo yum install -y pcre*
(5)安装libnet
//此处从浏览器下根据网址下载成功后,复制到指定目录
wget http://prdownloads.sourceforge.net/libdnet/libdnet-1.11.tar.gz?download
tar -xzvf libdnet-1.11.tar.gz
cd libdnet-1.11
./configure
//此处需要切换到root用户
make && make install
(6)安装zlib
sudo yum install zlib*
3 安装snort
wget https://www.snort.org/downloads/snort/snort-2.9.11.tar.gz
tar -xzvf snort-2.9.11.tar.gz
cd snort-2.9.11
//此处需要切换到root用户权限
./configure --enable-sourcefire && make && make install
安装成功!
4 snort 使用
snort -help
5 参考网址
http://blog.csdn.net/jackywgw/article/details/51693108
http://blog.csdn.net/a821478424/article/details/50951255