Snort

Network intrusion detection and prevention system. Real-time traffic analysis and packet logging.

About Snort

Snort is an open-source network intrusion detection system (NIDS) and intrusion prevention system (IPS). It performs real-time traffic analysis and packet logging on IP networks.

Key Features

Real-time traffic analysis
Protocol analysis & content matching
Rule-based detection engine
Inline mode for IPS
Preprocessors for anomaly detection
Community & subscriber rulesets

Why choose Snort?

Snort is an open source alternative to Suricata, Zeek. Licensed under GPL-2.0, it gives you full access to the source code and the freedom to modify, self-host, and contribute. It is available as a desktop or web application.