Security Basics mailing list archives

Freebsd & snort inline


From: ruurdster () gmail com
Date: 12 Sep 2006 09:02:38 -0000

Hi,

I want to use snort-inline on my freebsd 6.1 box with ipfw, bridge and mysql. I have it configured the right way. But 
the only alerts/drops i get are the following:

(snort decoder) Bad Traffic Loopback IP 
(snort decoder) Bad Traffic Same Src/Dst IP 

I heard that the freebsd divert do not work with the bridge? I hope someone figured it out.


Thanks in advantage

Ruurd

---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence 
in Information Security. Our program offers unparalleled Infosec management 
education and the case study affords you unmatched consulting experience. 
Using interactive e-Learning technology, you can earn this esteemed degree, 
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


Current thread: