[Snort-users] Any Interest?

skadhi skadhi at ...4497...
Thu Jan 17 06:04:06 EST 2002


On Thu, 2002-01-17 at 13:34, Brian Bartlett wrote:
[snip]

> 				3.	I am using NmapNT and Netcat for NT
> to scan and probe my sensors to produce alerts. Any other neat tools I
> should be using to tune the rules?
IDSWakeup is very good:
http://www.hsc.fr/ressources/outils/idswakeup/index.html.en

> 				4.	My home network and laptop have a
> software firewall installed on them (Tiny Personal Firewall). Will this
> affect the sensors installed on these PCs? If I understand the WinPcap docs
> this driver lies beneath the IP stack and should see the packets before the
> firewall does, correct?
hum... right. Normally a firewall shouldn't affect snort in any fashion.

Regards.
-- 
/Saad Kadhi --  [skadhi at ...4497...] 
[pgp keyid: 35592A6D http://pgp.mit.edu]
# buy a geek-in-a-can, point nozzle at technical problem and spray
# if desesperate degauss your screen. it might solve your pb as well





More information about the Snort-users mailing list