Hello,

I share the view expressed by Eric. Ntop is a network traffic
monitoring, snort is an IDS.

They both have their place and are very complementary tools. It would
be a tremendous task to turn ntop into an IDS a la snort because for
once ntop does not implement the rule engine.

More stability under Linux and FreeBSD (I will try Solaris some time),
more analysis of the traffic, more data loggin (to database) should be
the direction of development in my opinion.

Best regards,

Olivier

Reply via email to