Snort mailing list archives

[Novice].. Is it possible use drop or reject instead of log or alert??


From: "yuchan" <yuchan () kisti re kr>
Date: Thu, 9 Sep 2004 11:43:13 +0900

Hello..


I write rules of snort. 

but there is not drop or reject option  for specified ip or port 
how can i do reject or drop or pass specified ip or port? is it relative
iptable??

that is,  [reject|drop] tcp  192.168.1.0/24 80 <> any any  
Can i write above rule????


Thanks..




-------------------------------------------------------
This SF.Net email is sponsored by BEA Weblogic Workshop
FREE Java Enterprise J2EE developer tools!
Get your free copy of BEA WebLogic Workshop 8.1 today.
http://ads.osdn.com/?ad_id=5047&alloc_id=10808&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: