Get started Bring yourself up to speed with our introductory content.

What is the difference between Snort and Bro?

While Bro and Snort and both open source intrusion detection systems, they use different methods to detect intrusions and can complement one another on the network.

Bro is the only other real open source network intrusion detection system supported by a significant community of users. Vern Paxson of the University of California at Berkeley is the lead developer. Bro is considered a specification-based network IDS. Bro uses a variety of protocol analysis modules to inspect traffic and make judgments regarding its conformance to various norms. It is actually a very powerful complement to Snort.

This was last published in January 2008

Dig Deeper on Managed network security services

Start the conversation

Send me notifications when other members comment.

Please create a username to comment.

-ADS BY GOOGLE

MicroscopeUK

SearchSecurity

SearchStorage

SearchNetworking

SearchCloudComputing

SearchDataManagement

SearchBusinessAnalytics

Close