Security Basics mailing list archives
Fwd: Passive Snort Setup
From: Daniel Hood <dsmhood () gmail com>
Date: Fri, 20 Feb 2009 16:52:33 +1100
I think the Hogwash or snort_inline ideas look the best. I want to manage it completely via BASE cause I am lazy and dont like monitoring it any other way. If I used this same topology where would I set up the webserver (which interface? and i know it would need an ip) to run BASE? and would hogwash or snort_inline work? or would I need a 3rd interface used for management? Thanks, Daniel
Current thread:
- Passive Snort Setup Daniel Hood (Feb 19)
- Re: Passive Snort Setup Ivan . (Feb 19)
- Re: Passive Snort Setup Ray Van Dolson (Feb 19)
- Message not available
- Fwd: Passive Snort Setup Daniel Hood (Feb 20)
- RE: Passive Snort Setup Gould, Scott (Feb 20)
- Message not available
- Re: Passive Snort Setup Javier Reyna (Feb 19)
- RE: Passive Snort Setup Jeremi Gosney (Feb 20)
- Re: Passive Snort Setup Michal Purzynski (Feb 20)