EFW Support
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
Monday 18 November 2024, 02:40:22 pm
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
Get the new Updates directly from Endian
HERE
14258
Posts in
4377
Topics by
6515
Members
Latest Member:
hulteends
Search:
Advanced search
EFW Support
Support
General Support
Editing snort.conf
0 Members and 2 Guests are viewing this topic.
« previous
next »
Pages:
[
1
]
Author
Topic: Editing snort.conf (Read 10740 times)
sawilla
Full Member
Offline
Posts: 12
Editing snort.conf
«
on:
Saturday 29 May 2010, 12:42:28 am »
When I edit snort.conf, my changes are overwritten when the Intrusion Prevention System is disabled/enabled. Specifically, I need to add an "ignore_scanners { <IPs> }" directive to the sfportscan preprocesser in /etc/snort/snort/snort.conf. After doing this, if I disable then enable IPS, my changes get overwritten. How can I make the changes stick?
Logged
mrkroket
Hero Member
Offline
Posts: 495
Re: Editing snort.conf
«
Reply #1 on:
Saturday 29 May 2010, 01:16:19 am »
Probably on templates. There must be some snort.conf.tmpl near your snort.conf file....
Logged
sawilla
Full Member
Offline
Posts: 12
Re: Editing snort.conf
«
Reply #2 on:
Saturday 29 May 2010, 01:22:59 am »
That did it, thanks!
Logged
Pages:
[
1
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
Announcements
-----------------------------
=> Project News
=> Latest News and Updates
-----------------------------
Support
-----------------------------
=> General Support
=> Installation Support
=> EFW SMTP, HTTP, SIP, FTP Proxy Support
=> VPN Support
=> Hardware Support
-----------------------------
Development
-----------------------------
=> EFW Wishlist
=> Contribute Your Customisations & Modifications
Page created in 0.063 seconds with 20 queries.
Powered by SMF 1.1 RC2
|
SMF © 2001-2005, Lewis Media
Design by
7dana.com