Many of the rules in the community database version of snort have not been rigorously tested and can frequently cause false positives. As well, there are many rules which don't work or have long ago been superseded. Astaro is a commercial product, so must be more diligent about the rule sets that it uses, so as not to cause issues for its' paying business customers.
This does not make it less secure, but more tuned for efficiency and usability.
__________________ ACE v8/SCA v9.3
...still have a v5 install disk in a box somewhere.
Many of the rules in the community database version of snort have not been rigorously tested and can frequently cause false positives. As well, there are many rules which don't work or have long ago been superseded. Astaro is a commercial product, so must be more diligent about the rule sets that it uses, so as not to cause issues for its' paying business customers.
This does not make it less secure, but more tuned for efficiency and usability.
__________________ ACE v8/SCA v9.3
...still have a v5 install disk in a box somewhere.