Snort mailing list archives
Snort-inline
From: "Slighter, Tim" <tslighter () itc nrcs usda gov>
Date: Thu, 16 Jan 2003 13:49:36 -0700
Who out there has had any success in implementing snort-inline other than the standard "Honeypot" config? If anyone has, could you please share some brief info on your infrastructure, configs etc? At this point I can get the rc.firewall script to load and run and can also get snort-inline or snort -Q to run just fine. Problem is...rc.firewall zaps the external IF and snort-inline is not able to sniff out traffic on this interface.
Current thread:
- Snort-inline toohs (Jan 06)
- <Possible follow-ups>
- Snort-inline Slighter, Tim (Jan 16)
- snort-inline Slighter, Tim (Jan 21)
- Snort-inline Slighter, Tim (Mar 11)
- Snort-inline Slighter, Tim (Mar 14)
- snort-inline Ales Stibal (Mar 18)