Specifications
Guide to Snare for Linux
About this guide
This guide introduces you to the functionality of the Snare Agent for the Linux operating system.
Snare for Linux provides an event, auditing subsystem for the Linux operating system, and facilitates
objective-based filtering, and remote audit event delivery. Snare for Linux will also allow a security
administrator to fully remote control the application through a standard web browser if so desired.
Snare has been designed in such a way as to allow the remote control functions to be easily effected
manually, or by an automated process.
Other guides that may be useful to read include:
• Snare Overview
• The Snare Toolset - A White Paper
Table of contents:
1 Introduction.............................................................................................................. 4
2 Overview of Snare for Linux..........................................................................................5
3 Installing and running Snare........................................................................................... 6
3.1 Snare installation.................................................................................................... 6
3.2 Audit configuration.................................................................................................. 7
4 The Remote Control Interface........................................................................................8
4.1 Network Configuration............................................................................................10
4.2 Remote Control Configuration...................................................................................12
4.3 Objectives configuration..........................................................................................14
4.4 Display of Latest Events / Destination Status..................................................................20
4.5 List Displays......................................................................................................... 22
5 Snare Server............................................................................................................ 23
6 About InterSect Alliance..............................................................................................25
Appendix A - Configuration File Description........................................................................26
Appendix B - Event Output Format...................................................................................30
© InterSect Alliance, September 2014 Page 3 of 30 Version 4.1