Instalasi Suricata: Difference between revisions

From OnnoCenterWiki
Jump to navigationJump to search
Onnowpurbo (talk | contribs)
Onnowpurbo (talk | contribs)
No edit summary
 
Line 5: Line 5:
  sudo apt-get -y install libpcre3 libpcre3-dbg libpcre3-dev \
  sudo apt-get -y install libpcre3 libpcre3-dbg libpcre3-dev \
  build-essential autoconf automake libtool libpcap-dev libnet1-dev \
  build-essential autoconf automake libtool libpcap-dev libnet1-dev \
  libyaml-0-1 libyaml-dev zliblg zliblg-dev libcap-ng-dev libcap-ng0
  libyaml-0-2 libyaml-dev zlib1g zlib1g-dev libcap-ng-dev libcap-ng0 \
make libmagic-dev


di Ubuntu 10.04
di Ubuntu 10.04
Line 12: Line 13:
  build-essential autoconf automake libtool libpcap-dev libnet1-dev \
  build-essential autoconf automake libtool libpcap-dev libnet1-dev \
  libyaml-dev libcap-ng-dev libcap-ng0
  libyaml-dev libcap-ng-dev libcap-ng0
==Download htp==


Download htp secara manual
Download htp secara manual
Line 36: Line 40:
  ./configure --enable-nfqueue
  ./configure --enable-nfqueue


==Suricata==
==Download suricata==
 
Suricata
 
To download and build Suricata, enter the following:
 
wget http://www.openinfosecfoundation.org/download/suricata-1.3.tar.gz
tar -xvzf suricata-1.3.tar.gz
cd suricata-1.3/
 
 
Compile and install the engine


Download suricata
If you plan to build Suricata with IPS capabilities, enter:


  http://www.openinfosecfoundation.org/index.php/download-suricata
  ./configure --enable-nfqueue --prefix=/usr --sysconfdir=/etc --localstatedir=/var
http://www.openinfosecfoundation.org/download/suricata-1.0.2.tar.gz
 
cp suricata-1.0.2.tar.gz /usr/local/src
instead of
cd /usr/local/src
tar -xvzf suricata-1.0.2.tar.gz
cd suricata-1.0.2


atau
./configure --prefix=/usr --sysconfdir=/etc --localstatedir=/var


cd /usr/local/src
Continue with the next commands:
wget http://www.openinfosecfoundation.org/download/suricata-1.0.2.tar.gz
tar -xvzf suricata-1.0.2.tar.gz
cd suricata-1.0.2


  ./configure --enable-nfqueue
  ./configure --prefix=/usr --sysconfdir=/etc --localstatedir=/var
sudo mkdir /var/log/suricata/
  make
  make
  make install
  sudo make install
sudo ldconfig





Latest revision as of 00:13, 29 July 2012

Siapkan Aplikasi Pendukung

Siapkan berbagai aplikasi pendukung sebelum menginstalasi suricata

sudo apt-get -y install libpcre3 libpcre3-dbg libpcre3-dev \
build-essential autoconf automake libtool libpcap-dev libnet1-dev \
libyaml-0-2 libyaml-dev zlib1g zlib1g-dev libcap-ng-dev libcap-ng0 \
make libmagic-dev

di Ubuntu 10.04

sudo apt-get -y install libpcre3 libpcre3-dbg libpcre3-dev \
build-essential autoconf automake libtool libpcap-dev libnet1-dev \
libyaml-dev libcap-ng-dev libcap-ng0


Download htp

Download htp secara manual

http://openinfosecfoundation.org/index.php/download-suricata
http://openinfosecfoundation.org/download/libhtp-0.2.3.tar.gz

Atau download & Install htp secara manual

cd /usr/local/src
wget http://www.openinfosecfoundation.org/download/libhtp-0.2.3.tar.gz
tar -xzvf libhtp-0.2.3.tar.gz
cd libhtp-0.2.3
./configure
make
make install

Jika kita ingin menjalankan kemampuan IPS yang ada di suricata (./configure --enable-nfqueue) ada baiknya mengaktifkan

sudo apt-get -y install libnetfilter-queue-dev libnetfilter-queue1 libnfnetlink-dev libnfnetlink0 libcap-ng0

Mengaktifkan IPS dapat dilakukan pada saat konfigurasi menggunakan perintah

./configure --enable-nfqueue

Download suricata

Suricata

To download and build Suricata, enter the following:

wget http://www.openinfosecfoundation.org/download/suricata-1.3.tar.gz tar -xvzf suricata-1.3.tar.gz cd suricata-1.3/


Compile and install the engine

If you plan to build Suricata with IPS capabilities, enter:

./configure --enable-nfqueue --prefix=/usr --sysconfdir=/etc --localstatedir=/var

instead of

./configure --prefix=/usr --sysconfdir=/etc --localstatedir=/var

Continue with the next commands:

./configure --prefix=/usr --sysconfdir=/etc --localstatedir=/var
make
sudo make install
sudo ldconfig


Referensi

Pranala Menarik