Snort mailing list archives

Re: Snort 2.3 CVS branch, and new features


From: Victor Julien <victor () nk nl>
Date: Tue, 14 Sep 2004 14:32:19 +0200

On Tuesday 14 September 2004 11:29, Olaf Schreck wrote:
Also, thanks Dan Roelker of Sourcefire for integrating Snort-Inline
into the official project and ironing out issues that popped up during
the process.

The inline feature set includes only the core inline functionality.
This means that DROP, SDROP, and REJECT rule-types are supported. A
couple of new features were also added during the integration effort,
which provides inline state and dropping packets with bad checksums.
The Snort-Inline project will continue to develop new inline features,
so for the latest advancements in inline functionality, please
refer to the Snort-Inline project. Further documentation can be found
in doc/README.INLINE and the Snort-Inline website at
http://snort-inline.sf.net.

Will that be Linux/iptables only like the original snort-inline?  I'd
love to see a generic interface that could support *BSD's pf as well.

Snort inline should work on FreeBSD as well, although i have no personal 
experience with it. It needs a divert-socket to get it's packets. I don't 
know if other BSD's support this...

Regards,
Victor



ciao,
chakl


-------------------------------------------------------
This SF.Net email is sponsored by: YOU BE THE JUDGE. Be one of 170
Project Admins to receive an Apple iPod Mini FREE for your judgement on
who ports your project to Linux PPC the best. Sponsored by IBM. 
Deadline: Sept. 13. Go here: http://sf.net/ppc_contest.php
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: