Snort mailing list archives

RE: Secure transport between barnyard and remote mySQL server


From: "John Berkers" <berjo () ozemail com au>
Date: Wed, 5 Jan 2005 16:40:20 +1100

 
I have also got this working using FreeS/WAN IPSec tunnels.  This has the
upshot of encrypting all traffic between systems.  I have configured this
between the individual hosts involved in one of our installations.  The only
problem I have encountered from time to time is that I have an un-addressed
interface, and sometimes the routing table gets confused and loses the
default route.  This breaks FreeS/WAN.  Thankfully this only occurs when I
have to do a reboot of a sensor (which is not often).

My OS is Fedora Core 1.

Regards,

John Berkers
Senior Communications & Security Consultant
Hansen Technologies

Ph:       +61 3 9840 3833
Mob:     0419 532 312
Fax:      +61 3 9840 3099
john.berkers () hsntech com

-----Original Message-----
From: snort-users-admin () lists sourceforge net
[mailto:snort-users-admin () lists sourceforge net] On Behalf Of Michael Boman
Sent: Monday, 3 January 2005 22:27
To: Patrick Marquetecken
Cc: snort-users () lists sourceforge net
Subject: Re: [Snort-users] Secure transport between barnyard and remote
mySQL server

On Mon, 3 Jan 2005 11:54:28 +0100, Patrick Marquetecken
<patrick.marquetecken () pandora be> wrote:
Hi,

Has someone on this list experiance with a secure connection between
barnyard on the snort machine and a remote mySQL server?
If this is a good idee, what are the steps to get this working ?
Is this enough:ssh -L 3306:localhost:3306

Patrick

Yes, that's one way to do it. Another way is to use stunnel or cryptcat.

Best regards
 Michael  Boman


-------------------------------------------------------
The SF.Net email is sponsored by: Beat the post-holiday blues Get a FREE
limited edition SourceForge.net t-shirt from ThinkGeek.
It's fun and FREE -- well, almost....http://www.thinkgeek.com/sfshirt
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users




-------------------------------------------------------
The SF.Net email is sponsored by: Beat the post-holiday blues
Get a FREE limited edition SourceForge.net t-shirt from ThinkGeek.
It's fun and FREE -- well, almost....http://www.thinkgeek.com/sfshirt
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: