The goal of this page is to make a set of sample snort.conf files, and some samples for using other common tools with data from Emerging Threats. These will represent different size and goal installs of snort. We do not intend to provide snort.conf files that you can use without modification or understanding, but guides to help you benefit from the experience of the community as a whole.
We welcome submissions and tips to improve these files, as well as ideas for new types of configs to add.
This page is maintained by JamesMcQuaid
Diagram portraying home network defended by multiple layers of Snort Inline: HoneywallSamples - includes Honeywall and Smoothwall Snort config files, installation and usage tutorials, and DNS Black hole files for Smoothwall (ideal for home users new to a firewall server)
EmergingFirewallRulesRussianBusinessNetwork (includes resources for blocking the RBN ISP's former customers, and other organized crime networks).
WebBasedResearchToolsFirekeeperforFirefox