Snort mailing list archives
snort and firewall all in one machine
From: Peggy Kam <ppkam () n-dsi com>
Date: Thu, 13 May 2004 09:52:01 -0400
Hi,I am currently running the firewall and snort within the same machine; and snort is having its detections before firewall blocks the packets. I would like to use snort to test if my firewall actually blocks the packets launched by attackers. Would anyone give me some advice on how I could configure IDS to do its detections after the firewall blocks the packets by its rules?
Thanks in advance, Peggy ------------------------------------------------------- This SF.Net email is sponsored by: SourceForge.net Broadband Sign-up now for SourceForge Broadband and get the fastest 6.0/768 connection for only $19.95/mo for the first 3 months! http://ads.osdn.com/?ad_id=2562&alloc_id=6184&op=click _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- new Barnyard new snortb Chuck Holley (May 12)
- Re: new Barnyard new snortb Michael Anderson (May 12)
- snort and firewall all in one machine Peggy Kam (May 13)
- Re: snort and firewall all in one machine Matt Kettler (May 13)
- snort and firewall all in one machine Peggy Kam (May 13)
- <Possible follow-ups>
- Re: new Barnyard new snortb Michael Anderson (May 12)
- RE: new Barnyard new snortb Chuck Holley (May 13)
- Re: new Barnyard new snortb Bamm Visscher (May 13)
- RE: new Barnyard new snortb Chuck Holley (May 14)
- RE: new Barnyard new snortb Chuck Holley (May 13)
- Re: new Barnyard new snortb Michael Anderson (May 12)
- Re: new Barnyard new snortb Michael Anderson (May 14)