[Snort-users] Preventing Attacks

Jeffrey Taylor jeff at ...6176...
Wed Jun 26 08:14:11 EDT 2002


Is it possible to have Snort listen inside the firewall?  This is on a
one host set up.  I would like to see what is getting thru the
firewall, not what is thrown at the firewall.

TIA,
  Jeffrey

Quoting McCammon, Keith <Keith.McCammon at ...3497...>:

> Please specify you OS, as well as your sensor placement relative to
> the target host and any firewalls.
>  
> It would also help to specify what type of help you seek.  Do you
> want signature explanations?  Do you want to know if your hosts were
> compromised?  Do you want information on hardening your hosts?  Do you
> want to know how to reconfigure your firewall so that Snort doesn't
> get so much of this crap fired across her bow?




More information about the Snort-users mailing list