[Oisf-users] Fwsam Functionality

Jeremy A. Grove jgrove at quadrantsec.com
Thu Jul 11 14:19:01 UTC 2019


Hi There! 

I understand that the decision was made some time ago to not incorporate functionality to replicate FWSAM from Snort based on Barnyard having the ability to do this. Barnyard is now leaving us. Is there a current way to replicate this functionality? I need to be able to drop certain traffic based on rules while in IDS mode and not IPS/inline mode. 

Jeremy Grove, SSCP 
Security Engineer 
Quadrant Information Security 

Learn more= about our managed SIEM [ https://a.quadrantsec.com/3D%22https://quadrantsec.com/SaganMSSP%22 | people + product ] 


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20190711/0c9a032d/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 2131 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20190711/0c9a032d/attachment.bin>


More information about the Oisf-users mailing list