Snort mailing list archives

RE: How to ingnore a specific host(s) ?


From: CGhercoias () TWEC COM
Date: Fri, 30 May 2003 14:06:10 -0400

Thank you Erek, I think I'll go with encryption. Now I need to find how to
enable this for Apache 2.0.45....
Goggle is my friend, I know ;o)

-----Original Message-----
From: Erek Adams [mailto:erek () snort org] 
Sent: Friday, May 30, 2003 1:57 PM
To: Ghercoias, Catalin
Cc: snort-users () lists sourceforge net
Subject: Re: [Snort-users] How to ingnore a specific host(s) ?


On Fri, 30 May 2003 CGhercoias () TWEC COM wrote:

I have installed snort on several machines and everything works good. 
But,... I have one of the sensors listening in the _internal_ network 
, and is located on the same segment with the _management_ server 
(ACID, mysql, php, Snortcenter, etc). Whenever an alert is triggered , 
let's say someone have received an spam email with porn in it, the 
event gets written in the database.

[...snip...]

Two options

        * Use SSL + ACID + APACHE to encrypt the data
        * http://www.theadamsfamily.net/~erek/snort/ignore.txt

Cheers!

-----
Erek Adams

   "When things get weird, the weird turn pro."   H.S. Thompson


-------------------------------------------------------
This SF.net email is sponsored by: eBay
Get office equipment for less on eBay!
http://adfarm.mediaplex.com/ad/ck/711-11697-6916-5
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: