Snort mailing list archives
AW: Pass rules??
From: "Poppi, Sandro" <Sandro.Poppi () wacker com>
Date: Wed, 8 May 2002 07:14:05 +0200
I do it that way: - create a file pass.rules in your rules directory and add any pass rule you wish, e.g. pass tcp [1.2.3.4/32] any -> any 80 - add option -o to the snort command line For more information on that take a look at the Snort User's Manual where this is described in detail HTH, Sandro
Hi We are using Snort1.8.3 with mysql and demarc.We need to ignore some packets based on their ips,ie.,write some pass rules.Where do you place these rules and how do you configure snort for the same.Could somebody help us out. ------------------------------------------------- Sify Mail - now with Anti-virus protection powered by Trend Micro, USA. Know more at http://mail.sify.com Take the shortest route to success! Click here to know how http://education.sify.com _______________________________________________________________ Have big pipes? SourceForge.net is looking for download mirrors. We supply the hardware. You get the recognition. Email Us: bandwidth () sourceforge net _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
_______________________________________________________________ Have big pipes? SourceForge.net is looking for download mirrors. We supply the hardware. You get the recognition. Email Us: bandwidth () sourceforge net _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- AW: Pass rules?? Poppi, Sandro (May 07)