[Oisf-users] Avoid inspecting intra lan traffic with BPF filter expression
Cooper F. Nelson
cnelson at ucsd.edu
Thu Jun 30 18:26:11 UTC 2016
Absolutely, but given the exercise is to eliminate LOCAL <-> LOCAL IP
conversations that should be within scope.
On 6/30/2016 11:14 AM, Peter Manev wrote:
> Looking at the filter though we might end up with - "not"
> src net 10.250.104.192/28 -> dst net 10.250.104.192/28
> (Like src and dst from the same net)
> @Cooper - am I reading it right?
--
Cooper Nelson
Network Security Analyst
UCSD ITS Security Team
cnelson at ucsd.edu x41042
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: OpenPGP digital signature
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20160630/f9392783/attachment-0002.sig>
More information about the Oisf-users
mailing list