OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[ISSForum] GX firewall rule issues?

From: Richard Morris-Greene (richmorrisgreeneyahoo.com)
Date: Wed Feb 07 2007 - 10:13:59 CST


Anyone been having any issues with using firewall
rules set to "ignore" on a GX unit in passive IDS
mode? I'm trying to perform the same function as the
old fashioned packet filters but to no avail. Trying
to ignore all port 80 TCP traffic between two specific
IP's. I really dont want to create 19832 different
signature filters for all of the HTTP alerts. Any
suggestions?

Also, if anyone is interested, I put together a
slightly more detailed visio stencil for the GX units.
The ISS stencils arent bad, they just didnt provide
what I needed. Let me know and I'll forward you the
.vss file.

 - Dick Morris-Greene

 
____________________________________________________________________________________
Any questions? Get answers on any topic at www.Answers.yahoo.com. Try it now.
_______________________________________________
ISSForum mailing list
ISSForumatla-mm1.iss.net

TO UNSUBSCRIBE OR CHANGE YOUR SUBSCRIPTION, go to https://atla-mm1.iss.net/mailman/listinfo/issforum

To contact the ISSForum Moderator, send email to mod-issforumiss.net

The ISSForum mailing list is hosted and managed by Internet Security Systems, 6303 Barfield Road, Atlanta, Georgia, USA 30328.