[Snort-users] Hardware Requirements For Snort Inline

Will Metcalf william.metcalf at ...11827...
Wed Oct 31 16:51:39 EDT 2007


Are you using snort_inline or snort proper with --enable-inline?  can
you send your snort.conf?

On 10/31/07, andy at ...14226... <andy at ...14226...> wrote:
> Hi,
>
> We need to run snort_inline with only 2 rules (ddos.rules and
> dos.rules) to protect roughly 70Mbps of bandwidth.
>
> What kind of hardware would we need.  Currently, we are running a Xeon
> 2.4 w/HT, 1gb ram and whenever we try enabling snort_inline w/o
> clamav, the network starts to have increased latency and drops random
> packets.  Cpu load doesn't go too high either.
>
> Any suggestions?
>
> Thanks
> Andy
>
>
> -------------------------------------------------------------------------
> This SF.net email is sponsored by: Splunk Inc.
> Still grepping through log files to find problems?  Stop.
> Now Search log events and configuration files using AJAX and a browser.
> Download your FREE copy of Splunk now >> http://get.splunk.com/
> _______________________________________________
> Snort-users mailing list
> Snort-users at lists.sourceforge.net
> Go to this URL to change user options or unsubscribe:
> https://lists.sourceforge.net/lists/listinfo/snort-users
> Snort-users list archive:
> http://www.geocrawler.com/redir-sf.php3?list=snort-users
>




More information about the Snort-users mailing list