Home page logo
/

snort logo Snort mailing list archives

Re: Squid and Snort
From: waldo kitty <wkitty42 () windstream net>
Date: Fri, 05 Apr 2013 11:57:24 -0500

On 4/4/2013 20:59, David Cottam wrote:
Hello,
The Security Center I am with wants to use transparent squid (using a bridge)
with Snort listening in on the traffic as it crosses the bridge.

Is this possible? If so, how?

sure... the question is which side of squid do you want to listen on...

the setup is no different than a normal setup, IIUC... you just monitor the wire 
going to the squid box from your network or you monitor the wire coming from the 
squid box to the internet...


------------------------------------------------------------------------------
Minimize network downtime and maximize team effectiveness.
Reduce network management and security costs.Learn how to hire 
the most talented Cisco Certified professionals. Visit the 
Employer Resources Portal
http://www.cisco.com/web/learning/employer_resources/index.html
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


  By Date           By Thread  

Current thread:
  • Squid and Snort David Cottam (Apr 05)
    • Re: Squid and Snort waldo kitty (Apr 05)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
AlienVault