[Snort-users] question regarding pass rule
larrywichman at ...131...
Fri Nov 5 13:33:39 EST 2004
I am trying to add a pass rule so that I do not see
any events from a certain source IP. I have added the
following rule to snort.conf:
pass tcp 18.104.22.168 any -> $HOME_NET any
I have also added the following option to the snort
# set config file & path to snort executable
Am I doing something wrong?
Do you Yahoo!?
Check out the new Yahoo! Front Page.
More information about the Snort-users