[Snort-users] disabling sniping

Graham Bartlett (grbartle) grbartle at cisco.com
Thu May 2 03:01:05 EDT 2019



I have setup snort in inline mode.


It’s working as planned, but I would like the snort to silently discard dropped traffic, rather than sending an ICMP unreachable.

Is there a method to do this ?

I looked at sniping and setting the reply number to 0, but this didn’t seem possible.


<att> ::= (1..20)


Many thanks

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20190502/65161c05/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4990 bytes
Desc: not available
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20190502/65161c05/attachment.bin>

More information about the Snort-users mailing list