Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 14 Jan 2003 14:08:39 +0100
From:      Clement Laforet <sheepkiller@cultdeadsheep.org>
To:        Mark Bojara <mark@mics.co.za>
Cc:        freebsd-isp@freebsd.org
Subject:   Re: snort with ipfw
Message-ID:  <20030114140839.26ad6145.sheepkiller@cultdeadsheep.org>
In-Reply-To: <20030114110205.S291-100000@opium.co.za>
References:  <20030114110205.S291-100000@opium.co.za>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi,

Yes it is.
You have to use Guardian perl script, in contrib directory.

clem


On Tue, 14 Jan 2003 11:03:40 +0200 (SAST)
Mark Bojara <mark@mics.co.za> wrote:

> Hello,
> 
> Is it possible set up snort so that when it detects a portscan it
> automatically adds a ipfw rule and blocks that ip address?
> 
> Regards
> Mark Bojara
> 
> ----------------------------------------------------------------
> NEWS! Survivor of siamese twins joins parents
> ----------------------------------------------------------------
> 
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-isp" in the body of the message

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isp" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030114140839.26ad6145.sheepkiller>