Snort Inline

From NSMWiki
Jump to: navigation, search

Snort_inline is a set of patches to mainstream snort that enable it to work "in line" (aha!), where traffic flows through the Snort sensor instead of just beside it as in normal IDS. The patches support new rule keywords to allow traffic matching a rule to be dropped, thus turning Snort into an Intrusion Prevention System (IPS).

Home Site