On Tue, 14 May 2002, Lorin wrote:

> How could you set up a firewall that checks the content of the request?
> Is there a free software solution that you could use?  Would it be
> possible to implement in something like pf or netfilter?
>
> I think you could configure something that would work with some
> combination of apache's mod_rewrite and mod_proxy, but it seems like that
> would take more power than letting your webserver return a 404.

use snort, and then send tcp resets to connections/streams that contain
the matched signature. i  believe cisco has a commercial ids solution that
does this as well.

-- 
christian void - [EMAIL PROTECTED]
www.morphine.com/void/
gpg key available on request

jay is my hero.



_______________________________________________
Bits mailing list
[EMAIL PROTECTED]
http://www.sugoi.org/mailman/listinfo/bits

Reply via email to