Yuminstallpcre * yuminstallgcc-c ++ wgethttps: // Configure
Yum install pcre *
Yum install gcc-c ++
Wget https://libdnet.googlecode.com/files/libdnet-1.12.tgz
Tar-xzvf libdnet-1.12.tgz
./Configure; make install
Wget https://www.snort.org/downloads/snort/daq-2.0.4.tar.gz
Wget https://www.snort.org/downloads/snort/snort-2.9.7.2.tar.gz
Tar xvfz daq-2.0.4.tar.gz
Cd daq-2.0.4
./Configure
Make
Make install
Tar xvfz snort-2.9.7.2.tar.gz
CDS snort-2.9.7.2
./Configure -- enable-sourcefire
Make
Make install
Cp./snort-2.9.7.2/etc/snort. conf/etc/snort/
Cp./snort-2.9.7.2/etc/threshold. conf/etc/snort/
Https://www.snort.org/downloads/community/community-rules.tar.gz
Tar-zxvf community-rules.tar.gz
Cp community-rules/community. rules/etc/snort/rules/
# Start
Snort-d-l/var/log/snort-c/etc/snort. conf-D
Related settings will be updated continuously [avoid false positives or false positives during the activation process, which is the key]
This article is from the WoSec blog, please be sure to keep this source http://pathyon.blog.51cto.com/9465112/1636600