[Snort-devel] BPF on the fly

Jean-Philippe Grenier jgrenier at ...177...
Mon Jan 8 14:25:09 EST 2001


I was asking myself if it is possible to add BPF filters on the fly ?

Like if someone trigger an alert, to not read anymore of his attacks.

I've never used the BPF, but is it possible to filter multiple ips or will
it be to overhelming because the list of ips to filter might be long.


Thanks, Jean-Philippe


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-devel/attachments/20010108/3e125669/attachment.html>


More information about the Snort-devel mailing list