OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Erek Adams (erektheadamsfamily.net)
Date: Thu Nov 01 2001 - 14:14:20 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Thu, 1 Nov 2001, snortlst snortlst wrote:

    > I want to monitor with snort sensor traffic that comes through or firewall.
    > In order to do so I connected snort machine to the lan switch and configured
    > switch to mirror all traffic from the lan firewall nic to snort sensor port.
    > Is that a correct way to figure out what comes through firewall and reaches
    > the lan network?

    Yeppers. All good.

    That should show everything that passes thru the firewall from the outside to
    the inside. It will also show all traffic destined for the firewall, from
    your inside nets.

    -----
    Erek Adams
    Nifty-Type-Guy
    TheAdamsFamily.Net

    _______________________________________________
    Snort-users mailing list
    Snort-userslists.sourceforge.net
    Go to this URL to change user options or unsubscribe:
    https://lists.sourceforge.net/lists/listinfo/snort-users
    Snort-users list archive:
    http://www.geocrawler.com/redir-sf.php3?list=snort-users