[Snort-sigs] snort whitelist

frank at ...2338... frank at ...2338...
Thu Mar 25 06:45:19 EST 2004


MEGA Hospedagem <snort at ...2336...>:

> is it possible to set snort to don't even analyze packets from certain
> IP?

Yes, you can do this by passing a BPF-Filter on startup.

eg. 
$ snort src not 192.168.1.1 and dst not 192.168.1.1

HTH Frank




More information about the Snort-sigs mailing list