[Discussion] Suricata Inline Mode FreeBSD BRIDGING

nick at rogness.net nick at rogness.net
Fri May 21 13:13:47 UTC 2010


It is not a problem with suricata.  

At one point in the past divert sockets could not handle  bridged frames.  I believe this was addressed with a sysctl knob.  Checkout 'man divert' and 'man ipfw'.


Nick

Sent from my BlackBerry Smartphone provided by Alltel

-----Original Message-----
From: Will Metcalf <william.metcalf at gmail.com>
Date: Thu, 20 May 2010 22:49:56 
To: Miler Alberto Garcia Villanueva<phl4kx at gmail.com>
Cc: <discussion at openinfosecfoundation.org>
Subject: Re: [Discussion] Suricata Inline Mode FreeBSD BRIDGING

hmmm can IPFW divert sockets not be used in conjunction with a bridge
on FreeBSD?  I'm not that familiar....

Regards,

Will

On Thu, May 20, 2010 at 10:11 PM, Miler Alberto Garcia Villanueva
<phl4kx at gmail.com> wrote:
> Hi all, can I run Suricata in inlineMode (IPS) with FreeBSD driver
> socket in Transparent firewall (Bridging), is possible or I have to
> use linux?
> _______________________________________________
> Discussion mailing list
> Discussion at openinfosecfoundation.org
> http://lists.openinfosecfoundation.org/mailman/listinfo/discussion
>
_______________________________________________
Discussion mailing list
Discussion at openinfosecfoundation.org
http://lists.openinfosecfoundation.org/mailman/listinfo/discussion


More information about the Discussion mailing list