|
|||||||||||
|
[Snort-users] Promiscuous mode on only one interface
From: Brei, Matt <mbrei(at)medclaiminc.com>
Date: Sat Mar 29 2003 - 17:36:58 EST
I am using snort 1.9.1 on Red Hat 8.0. The machine has 2 NICs, one for Internet and one for LAN, and is running an iptables script to route and firewall the connection to the Internet. Everything is working great, but I can't get snort to listen on both interfaces. I would like to see what snort picks up before the firewall has a chance to drop it. I'm not sure if it has anything to do with it, but eth0 (LAN) is the only of the two that runs in promiscuous mode. Any advice would be appreciated. Matt This SF.net email is sponsored by: The Definitive IT and Networking Event. Be There! NetWorld+Interop Las Vegas 2003 -- Register today! http://ads.sourceforge.net/cgi-bin/redirect.pl?keyn0001en Snort-users mailing list Snort-users@lists.sourceforge.net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users Received on Sat Mar 29 17:43:14 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:11:55 EDT |
||||||||||
|
|||||||||||