[Snort-users] Correct setup

snortlst snortlst snortlst at ...125...
Thu Nov 1 11:56:10 EST 2001


I want to monitor with snort sensor traffic that comes through or firewall.
In order to do so I connected snort machine to the lan switch and configured
switch to mirror all traffic from the lan firewall nic to snort sensor port.
Is that a correct way to figure out what comes through firewall and reaches
the lan network?




More information about the Snort-users mailing list