configuring-snort-ids-for-intrusion-detection

Pass

Audited by Gen Agent Trust Hub on Apr 8, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill performs high-privilege administrative tasks using sudo, including installing system packages, modifying network interface parameters (ethtool, ip link), and creating systemd service units for persistence.
  • [EXTERNAL_DOWNLOADS]: Fetches source code and rulesets from official repositories including snort.org and the Snort3 organization on GitHub.
  • [COMMAND_EXECUTION]: The scripts/agent.py management utility invokes the Snort binary via subprocess to perform configuration validation and traffic analysis using environment-sourced paths.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 8, 2026, 12:00 AM