Snort hooks into bpf, bpf gets 1st look at all traffic. 

Greg
 

> -----Original Message-----
> From: Jason J. Ellingson [mailto:[EMAIL PROTECTED] 
> Sent: Wednesday, October 04, 2006 2:58 PM
> To: [email protected]
> Subject: RE: [pfSense-discussion] IDS yet?
> 
> So far, I like the new Snort package.  Very nice and easy to set up.
> You have my praises!
> 
> If I am correct, the Snort package only sees traffic that was 
> not blocked by firewall rules?
> 
> - Jason
> 

Reply via email to