Snort mailing list archives

Mirroring port


From: Abid Ayoub <abid.ayoub () gmail com>
Date: Thu, 18 Jul 2013 15:42:06 +0200

Hello

I want to manage my small network. i have coonected snort to the mirror
port of the switch .
For the sniff , ok . But when i want tio block a  traffic like tcp traffic,
 i can not.
is there a solution for that?
Can i sniff from an interface (eth0) and apply instruction from another
interface (eth1)?

Thnaks
------------------------------------------------------------------------------
See everything from the browser to the database with AppDynamics
Get end-to-end visibility with application monitoring from AppDynamics
Isolate bottlenecks and diagnose root cause in seconds.
Start your free trial of AppDynamics Pro today!
http://pubads.g.doubleclick.net/gampad/clk?id=48808831&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: