Snort mailing list archives

Re: snort sensor on virtual machine...[?]


From: Paul Marin <pmarinh45 () gmail com>
Date: Wed, 11 Apr 2012 12:18:13 -0430

Thanks for the tip Mike,

I believe i tried the same but maybe i missed something while doing it...

I'll try it again...

Kindly,

Paul

El 11/04/2012 12:12 p.m., Mike Hale escribió:
You can make it work, you just have to dedicate the networks ports in
your server to it.

Essentially, you create a VSwitch using the NIC you use to get the
traffic, and then connect the sniffing interfaces on your snort VM to
that vswitch.  It was pretty straightforward...feel free to ping me
offlist if you'd like any other info on this.


------------------------------------------------------------------------------
Better than sec? Nothing is better than sec when it comes to
monitoring Big Data applications. Try Boundary one-second 
resolution app monitoring today. Free.
http://p.sf.net/sfu/Boundary-dev2dev
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: