Packet filter rules for ipfw question.

Gustaf Florén via Snort-users <[email protected]>
Newsgroups gmane.comp.security.ids.snort.general
Message-ID <CADkpq3u1NmjGRyC729C0RC4L=Nc0T20af1owzz+88Q=WTBFDYw@mail.gmail.com>
Hello!

I am going to build a gateway/router in freebsd and run snort as an IPS in
inline mode with ipfw.
I wonder if my rules in pf.conf are correct???

pass out on eth0 divert-packet port 9000 keep-state
pass out on eth1 divert-packet port 9000 keep-state

pass in on eth0 divert-packet port 9000
pass in on eth1 divert-packet port 9000


/Gustaf

_______________________________________________
Snort-users mailing list
[email protected]
Go to this URL to change user options or unsubscribe:
https://lists.snort.org/mailman/listinfo/snort-users

	To unsubscribe, send an email to:
	[email protected]

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.