Snort mailing list archives

Re: Any Interest?


From: skadhi () ib-group com (skadhi)
Date: 17 Jan 2002 15:02:15 +0100

On Thu, 2002-01-17 at 13:34, Brian Bartlett wrote:
[snip]

                              3.      I am using NmapNT and Netcat for NT
to scan and probe my sensors to produce alerts. Any other neat tools I
should be using to tune the rules?
IDSWakeup is very good:
http://www.hsc.fr/ressources/outils/idswakeup/index.html.en

                              4.      My home network and laptop have a
software firewall installed on them (Tiny Personal Firewall). Will this
affect the sensors installed on these PCs? If I understand the WinPcap docs
this driver lies beneath the IP stack and should see the packets before the
firewall does, correct?
hum... right. Normally a firewall shouldn't affect snort in any fashion.

Regards.
-- 
/Saad Kadhi --  [skadhi () ib-group com] 
[pgp keyid: 35592A6D http://pgp.mit.edu]
# buy a geek-in-a-can, point nozzle at technical problem and spray
# if desesperate degauss your screen. it might solve your pb as well


_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: