I think snort is the  "detection system" and snortsam is the "prevention
system" in Clarkconnect.
>From what I read snortsam is like a "plugin" for snort, is this included in
the snort of Endian?



woodrowbone wrote:
> 
> Hi guys!
> 
> Before testing Endian I did use Clarkconnect with an Intrusion Prevention
> feature that I did like.
> It blocked an attackers IP for 24 hours if it detected suspicious
> behaviour, does Endian have something like that?
> 
> Woodrow
> 

-- 
View this message in context: 
http://www.nabble.com/Does-Endian-feature-a-Intrusion-Prevention-system--tf4573647.html#a13078137
Sent from the efw-user mailing list archive at Nabble.com.


-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________
Efw-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/efw-user

Reply via email to