EFW Support
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
Monday 25 November 2024, 07:03:09 pm
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
CLICK HERE
for the The official Endian Roadmap and Issue tracker
14261
Posts in
4377
Topics by
6517
Members
Latest Member:
Sandro
Search:
Advanced search
EFW Support
Support
General Support
Editing snort.conf
0 Members and 0 Guests are viewing this topic.
« previous
next »
Pages:
[
1
]
Author
Topic: Editing snort.conf (Read 10806 times)
sawilla
Full Member
Offline
Posts: 12
Editing snort.conf
«
on:
Saturday 29 May 2010, 12:42:28 am »
When I edit snort.conf, my changes are overwritten when the Intrusion Prevention System is disabled/enabled. Specifically, I need to add an "ignore_scanners { <IPs> }" directive to the sfportscan preprocesser in /etc/snort/snort/snort.conf. After doing this, if I disable then enable IPS, my changes get overwritten. How can I make the changes stick?
Logged
mrkroket
Hero Member
Offline
Posts: 495
Re: Editing snort.conf
«
Reply #1 on:
Saturday 29 May 2010, 01:16:19 am »
Probably on templates. There must be some snort.conf.tmpl near your snort.conf file....
Logged
sawilla
Full Member
Offline
Posts: 12
Re: Editing snort.conf
«
Reply #2 on:
Saturday 29 May 2010, 01:22:59 am »
That did it, thanks!
Logged
Pages:
[
1
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
Announcements
-----------------------------
=> Project News
=> Latest News and Updates
-----------------------------
Support
-----------------------------
=> General Support
=> Installation Support
=> EFW SMTP, HTTP, SIP, FTP Proxy Support
=> VPN Support
=> Hardware Support
-----------------------------
Development
-----------------------------
=> EFW Wishlist
=> Contribute Your Customisations & Modifications
Page created in 0.063 seconds with 19 queries.
Powered by SMF 1.1 RC2
|
SMF © 2001-2005, Lewis Media
Design by
7dana.com