Pfsense + Snort Pass List

Daniel Reuben via Snort-sigs <[email protected]> Wed, 5 Jun 2024 14:59:44 +0000
Newsgroups gmane.comp.security.ids.snort.sigs
Message-ID <MW4PR17MB468192FD56FECE178802CB71B6F92@MW4PR17MB4681.namprd17.prod.outlook.com>
Hello,

I am emailing to confirm whether this does the job as intended because the wording is quite confusing.

Ive reviewed the document below on the netgate website and the instructions seems fairly easy to implement. But why is it involving external net. Can you please explain to me the wording for this description below. (The part I circled)

I would like to confirm whether if I add IPs to this passlist, it will ignore/exclude this particular IP from blocking, to the interface specified.


[A screenshot of a computer  Description automatically generated]

_______________________________________________
Snort-sigs mailing list
[email protected]
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads">emerging threats</a>!
image001.png (image/png, 225.8 KB) - not displayed