Testing the Console

For this step you are going to perform a real upgrade to the server to test your newly installed SSH client. It is possible to add an additional layer of security to the Snort environment via .htaccess IP address restrictions. Restricting by IP address will make it more difficult for unskilled persons to access ACID. You can add lines to the .htaccess file on the server that will only allow the IP address of the console.

For a change of pace, we will use the Windows version of PuTTY to connect to the SSH server on the Snort server. Running the PuTTY executable will bring up the configuration and login screen (see Figure 8.1).

Figure 8.1. PuTTY configuration.

On the Session screen, enter the IP address of the Snort server and ...

Get Intrusion Detection with Snort now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.