Snort mailing list archives

Ethernet Tap


From: "STEVE MAKOUSKY" <SMAKOUS1 () FAIRVIEW ORG>
Date: Fri, 13 Aug 2004 13:31:04 -0500

Has anyone had any luck using the tap that is described in the Doc area?

Is there any instructions out there for building a full duplex tap?

If not is it easy enough to start snort on two nics and log to the same
database and 
handle packet reconstruction that way????



Steve C. Makousky
Sr. Information Security Analyst
Fairview IMS Information Center
2020 Minnehaha Ave. So.
Minneapolis, Minnesota 55404
smakous1 () fairview org

The information transmitted in this e-mail is intended only for the person or entity to which it is addressed
and may contain confidential and/or privileged material, including “protected health information.”  If you are
not the intended recipient, you are hereby notified that any review, retransmission, dissemination,
distribution, or copying of this message is strictly prohibited.  If you have received this communication in
error, please destroy and delete this message from any computer and contact us immediately by return e-mail.
<<<<P.H.I.>>>>

Current thread: