Snort mailing list archives

Re: snort behind firewall ??


From: "./" <dotslash () linif org>
Date: Sun, 29 Apr 2001 12:33:43 +0400

On Sat, 28 Apr 2001, dotslash wrote:

so where and how should one install snort then?  if it's installed
outside
the firewall and the snort box is not protected (by a firewall) then it
would get h4x0r right?

If you really want to protect your box, and are running something that
supports it...  You could turn up the outside interface with no IP bound
to
it.  To my knowledge Solaris and *BSD will do that.


sounds good. i'll check on it since i have a fbsd system here.

Now, you'll have to use the backend for access to it.  Only other thing
would
be if that your traffic was all routed thru that box, this wouldn't work.
You'd have no where to route the traffic to.  :-/


i guess i have to install a second nic then if what you're suggesting works.
i'll give this a try.


regards,




_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
http://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: