OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: [snort] networks under different CIDR blocks
From: Joey McAlerney (joeySiliconDefense.com)
Date: Fri Mar 03 2000 - 11:14:30 CST


> Do I see a request for multiple network protection
> within SPP? Anyone? Anyone?

That would be nice, but then again, people may be running two snorts
anyway instead of doubling/tripling the rules. It would be nice to have
a collection of the ways people have snort configured for their
network(s). People who are getting started and wondering, "Ok, now
I have to figure out the best way to monitor X type of traffic over Y
networks" could get some ideas instead of pondering some of the same
things that have already been thought about.

-Joey