Snort mailing list archives

snort with two interface


From: Leonardo Pezente <lmpezente () gmail com>
Date: Wed, 5 Dec 2012 13:52:08 -0200

i have the snort in the border of a network, and how this topic shows, it
has two interface. i have put the HOME_NET equal to the ip of the both
interfaces.
the think is: in one of them i can detect attacks, but in the other i cant.
when i start to test, i was using just one (the iterface that is detecting).
but i need particular that the other detect too. so, what could be wrong?
my snort.conf is working fine, and i he is starting on boot sniffing both
interface.
This might be a problem with pcap?
------------------------------------------------------------------------------
LogMeIn Rescue: Anywhere, Anytime Remote support for IT. Free Trial
Remotely access PCs and mobile devices and provide instant support
Improve your efficiency, and focus on delivering more value-add services
Discover what IT Professionals Know. Rescue delivers
http://p.sf.net/sfu/logmein_12329d2d
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: