I was the one working on the Snort rpm. I had a finished working product at one time but then redesigned my focus based on a different look at the functionality I was trying to achieve.
The rpm I am trying to finish now - installs Snort, Arachnids, and the ARIS upload client for the ARIS service at aris.securityfocus.com.
There are two agents running - one externally used for Attack Detection and one running on the internal interface specific to e-smith settings looking for Intrusion Detection. The internal rule set is based on some detailed threat modelling based on e-smith's detailed release of the e-smith security system.
I was previously using Arachnids to get my external interface snort rules downloaded from Whitehats.org but due to recent circumstance I again have to re-think how I want to set the whole thing up.
If you want to give it a go just using the regular snort rpm it isn't too difficult, and I will help where I can.
Justin.