[Snort-users] Snort IPS Functionality

Michael Ray miker at ...6747...
Fri Apr 1 03:43:54 EST 2005

On Wed, 30 Mar 2005 14:23:49 +0200, you wrote:

>Hello all,
>            I'm interested in using snort on a FreeBSD machine as an IPS.
>I've read the docs on the website and as far as I can see the only available
>"IPS" functionality exists on Linux, using iptables. Does this actually just
>drop the questionable packet - or is it generating firewall rules? And does
>any of the IPS functionality work on FreeBSD at all? There was a project a
>while ago called Hogwash, which would do exactly what I'm interested in -
>but that seems long dead.

Take a look at snortsam.



More information about the Snort-users mailing list