Snort mailing list archives

Re: Re : Different bpf filter for every multiple config used in snort


From: "C. L. Martinez" <carlopmart () gmail com>
Date: Fri, 17 May 2013 21:25:14 +0200

On 5/17/13, Rm Kml <rmkml () yahoo fr> wrote:
Hi,

I don't known if I understand correctly but why don't use same -F bpf_file
on every multiple snort cmd line ?

Regards
@Rmkml


Thanks Rmkml. I have configured one snort instance with multiple
configs, three in total. Due to limitation in ipvar to use ip ranges,
I need to discriminate what ip's and ip ranges and ports are monitored
by each one of this snort configs (and all ip ranges are in the same
network).

------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: