Snort is the best Intruder Detection System in the open source world.

Just learn that Snort has three modes :

-sniffer mode;
-packet logger mode; and
-Network Intrusion Detection System (NIDS) mode.

In NIDS mode, it has built-in 2500 detection rules. A dedicated station is needed for Snort as it requires a high processing power.

