Snort mailing list archives

preprocessor arpspoof


From: Juan Fernandez <Juan.Fernandez () deltathree com>
Date: Mon, 16 Aug 2004 18:14:26 +0300

Hi,

 

I just want to be sure that I understood how to configure arpspoof.

 

Do I need to insert each mac address of a server that I want to monitor for
arp poisoning?

 

If for example I have 50 servers on the DMZ that I want them to be monitored
for arp attacks, do I need to enter all there ips+mac addresses here?

 

Thanks.

 

 


Current thread: