[Snort-users] RE: A couple more questions
michaels at ...155...
Mon Jun 24 00:52:07 EDT 2002
Glad to help.
Michael Steele | System Engineer / Support Technician
mailto:michaels at ...155...
Silicon Defense: IDS solutions - http://www.silicondefense.com
Snort: Open Source Network IDS - http://www.snort.org
From: Archer [mailto:archer at ...2694...]
Sent: Monday, June 24, 2002 12:41 AM
To: Michael Steele
Subject: Re: A couple more questions
Thank you very much for your help. I made the change to $HOME_NET and
the logs are all but empty! So thank you, that is what we wanted. We
to log just what comes from the outside. We don't need internal support
since we have regularly updated desktop firewalls on all machines and
are not allowed to edit the rules. So, our internal network should be
well locked down.
Thanks again for you all of your help. You have done a great service to
More information about the Snort-users