Snort mailing list archives

RE: Snort with DHCP


From: "Sadanapalli, Pradeep Kumar (MED, TCS)" <Pradeep.Sadanapalli () med ge com>
Date: Fri, 2 May 2003 15:27:36 -0500

Thanks Erek. Yes my listening interface is eth0. My intention is to
configure snort to see the traffic only on my NIC.
So by keeping "var HOME_NET $eth0-ADDRESS" in snort.conf, will it meet
my requirement? What is the difference between 
running snort in promiscuous mode and not in promiscuous mode?  

Thanks
Pradeep


-----Original Message-----
From: David Alonso De La Vega Tapage [mailto:delavegad () bancoaliado com]
Sent: Friday, May 02, 2003 1:44 PM
To: Erek Adams
Cc: Sadanapalli, Pradeep Kumar (MED, TCS);
snort-users () lists sourceforge net
Subject: Re: [Snort-users] Snort with DHCP




Erek Adams wrote:

On Fri, 2 May 2003, Sadanapalli, Pradeep Kumar (MED, TCS) wrote:
 


If your listening interface is eth0 then define it like:

      var HOME_NET $eth0_ADDRESS

 

if you eth0  not have ip address .. ?


-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: