[Snort-users] Snort IPS Functionality

Briggs, Bruce Bruce.Briggs at ...13183...
Wed Mar 30 09:36:03 EST 2005


OK, then maybe this:
http://www.snort.org/docs/snort_htmanuals/htmanual_232/node7.html 

-----Original Message-----
From: Will Metcalf [mailto:william.metcalf at ...11827...] 
Sent: Wednesday, March 30, 2005 9:34 AM
To: Briggs, Bruce
Cc: Dave Raven; snort-users at lists.sourceforge.net
Subject: Re: [Snort-users] Snort IPS Functionality

I really should update our sf page..... *sigh* so much to do and so
little time.

Regards,

Will


On Wed, 30 Mar 2005 09:05:35 -0500, Briggs, Bruce
<Bruce.Briggs at ...13183...> wrote:
>  
> See this: 
> http://snort-inline.sourceforge.net/ 
>   
> Bruce
>  
>  ________________________________
>  From: snort-users-admin at lists.sourceforge.net
> [mailto:snort-users-admin at lists.sourceforge.net] On Behalf Of Dave
Raven
> Sent: Wednesday, March 30, 2005 7:24 AM
> To: snort-users at lists.sourceforge.net
> Subject: [Snort-users] Snort IPS Functionality
> 
>  
>  
>  
> 
> Hello all, 
> 
>             I'm interested in using snort on a FreeBSD machine as an
IPS.
> I've read the docs on the website and as far as I can see the only
available
> "IPS" functionality exists on Linux, using iptables. Does this
actually just
> drop the questionable packet - or is it generating firewall rules? And
does
> any of the IPS functionality work on FreeBSD at all? There was a
project a
> while ago called Hogwash, which would do exactly what I'm interested
in -
> but that seems long dead... 
> 
>   
> 
> Thanks in advance 
> 
> Dave 
> 
>




More information about the Snort-users mailing list