Snort mailing list archives

RE: brut force attack not detected


From: Graeme Fowler <graeme.fowler () hosteurope com>
Date: Thu, 26 Jul 2001 16:32:14 +0100

Paul wrote:

Alternatively, if you just want to monitor one port of the 
switch you could  buy a cheap hub and put it between that
port of the switch and the computer/router/whatever that
was on that port, and put the Snort computer on another port
of the hub.

...but remember that if you're in an environment where speed is important
that this method will lose full-duplex capability. It can also break things
with respect to maximum repeater count, so be careful if you have a long
chained network.

Graeme

_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
http://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: