Problems with packet sniffing in promiscuous mode
Hi,
I'm trying to run Snort in promiscious mode, however it's not working properly. I only see packets destined to and from the machine running snort, and not network traffic.
I've tried on both Fedora, Redhat, and Windows. On the Linux systems, I set the appropriate interface to promiscuous mode using: ifconfig eth0 promisc
The interface shows up in promiscuous mode, but when I run snort, or any other packet sniffer such as ethereal or tcpdump, I see only broadcasts and packets directed to the machine in question -- no other traffic. Can anyone give me some direction on this? I'm not sure what to try next. All machines are behind a $10 linksys 5 port hub.
|