Snort mailing list archives

Snort-inline


From: "Slighter, Tim" <tslighter () itc nrcs usda gov>
Date: Thu, 16 Jan 2003 13:49:36 -0700

Who out there has had any success in implementing snort-inline other than
the standard "Honeypot" config?

If anyone has, could you please share some brief info on your
infrastructure, configs etc?

At this point I can get the rc.firewall script to load and run and can also
get snort-inline or snort -Q to run just fine.  Problem is...rc.firewall
zaps the external IF and snort-inline is not able to sniff out traffic on
this interface.  

Current thread: