[Snort-users] snort behind firewall ??

./ dotslash at ...1760...
Sun Apr 29 04:33:43 EDT 2001

> On Sat, 28 Apr 2001, dotslash wrote:
> > so where and how should one install snort then?  if it's installed
> > the firewall and the snort box is not protected (by a firewall) then it
> > would get h4x0r right?
> If you really want to protect your box, and are running something that
> supports it...  You could turn up the outside interface with no IP bound
> it.  To my knowledge Solaris and *BSD will do that.

sounds good. i'll check on it since i have a fbsd system here.

> Now, you'll have to use the backend for access to it.  Only other thing
> be if that your traffic was all routed thru that box, this wouldn't work.
> You'd have no where to route the traffic to.  :-/

i guess i have to install a second nic then if what you're suggesting works.
i'll give this a try.


