Snort mailing list archives
Re: Any Interest?
From: skadhi () ib-group com (skadhi)
Date: 17 Jan 2002 15:02:15 +0100
On Thu, 2002-01-17 at 13:34, Brian Bartlett wrote: [snip]
3. I am using NmapNT and Netcat for NT to scan and probe my sensors to produce alerts. Any other neat tools I should be using to tune the rules?
IDSWakeup is very good: http://www.hsc.fr/ressources/outils/idswakeup/index.html.en
4. My home network and laptop have a software firewall installed on them (Tiny Personal Firewall). Will this affect the sensors installed on these PCs? If I understand the WinPcap docs this driver lies beneath the IP stack and should see the packets before the firewall does, correct?
hum... right. Normally a firewall shouldn't affect snort in any fashion. Regards. -- /Saad Kadhi -- [skadhi () ib-group com] [pgp keyid: 35592A6D http://pgp.mit.edu] # buy a geek-in-a-can, point nozzle at technical problem and spray # if desesperate degauss your screen. it might solve your pb as well _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Any Interest? Brian Bartlett (Jan 17)
- Re: Any Interest? skadhi (Jan 17)
- Re: Any Interest? tony (Jan 17)
- Re: Any Interest? John Sage (Jan 17)