LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 04-08-2009, 06:34 AM   #1
priyadarshan
Member
 
Registered: Feb 2009
Location: Ahmedabad, Gujarat, India
Posts: 197

Rep: Reputation: Disabled
Snort


Can I use snort package in inline mode????


How????

I have snort working properly......
I did ./configure --enable-inline......
I did iptables -A OUTPUT -p tcp --dport 80 -j QUEUE

But I cant use the options 'drop', 'sdrop', 'reject'

Specifying 'sdrop' and 'reject' options in local.rules file give error... while drop does not show any error but it really does not stop or log packets.......
 
Old 04-08-2009, 09:25 AM   #2
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,659

Rep: Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970
Quote:
Originally Posted by priyadarshan View Post
Can I use snort package in inline mode????
How????

I have snort working properly......
I did ./configure --enable-inline......
I did iptables -A OUTPUT -p tcp --dport 80 -j QUEUE

But I cant use the options 'drop', 'sdrop', 'reject'

Specifying 'sdrop' and 'reject' options in local.rules file give error... while drop does not show any error but it really does not stop or log packets.......
Please read the links that were posted to another of your questions, asking essentially the same thing. The Snort_inline page, and the snort forums, both address IPtables, and how to set this up.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[HELP]SNORT PROBLEMS(IDS)-service snort start JayCool Linux - Software 5 03-15-2009 12:34 PM
Snort - no portscan and tcp alerts in snort av.dubey Linux - Software 6 07-11-2008 09:56 PM
Starting snort: ERROR: User "snort" unknown games1 Linux - Software 3 02-07-2007 08:21 PM
Error when starting up snort: bash:!/bin/sh/usr/local/bin/snort :Eent not found cynthia_thomas Linux - Software 1 11-11-2005 02:59 PM
snort failed: snort: symbol lookup error: undefined symbol: usmAES192PrivProtocol Emmanuel_uk Linux - Security 1 07-10-2005 10:29 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 12:27 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration