[Snort-users] preprocessor arpspoof

Juan Fernandez Juan.Fernandez at ...2210...
Mon Aug 16 08:15:09 EDT 2004


Hi,

 

I just want to be sure that I understood how to configure arpspoof.

 

Do I need to insert each mac address of a server that I want to monitor for
arp poisoning?

 

If for example I have 50 servers on the DMZ that I want them to be monitored
for arp attacks, do I need to enter all there ips+mac addresses here?

 

Thanks.

 

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20040816/68c2c209/attachment.html>


More information about the Snort-users mailing list