[Snort-users] Snort IPS Functionality

Dave Raven fx at ...13229...
Wed Mar 30 05:19:07 EST 2005


Hello all,

            I'm interested in using snort on a FreeBSD machine as an IPS.
I've read the docs on the website and as far as I can see the only available
"IPS" functionality exists on Linux, using iptables. Does this actually just
drop the questionable packet - or is it generating firewall rules? And does
any of the IPS functionality work on FreeBSD at all? There was a project a
while ago called Hogwash, which would do exactly what I'm interested in -
but that seems long dead.

 

Thanks in advance

Dave

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20050330/7d595b80/attachment.html>


More information about the Snort-users mailing list