Simple question for you all...but it evades me. I'm trying to setup a box that will monitor a network, but be totally invisible to that network, but it needs an IP since it will be using some programs like BigBrother and whatnot. So...my question is...if I use IPFW to block, for example, all ports and effectively totally blocking TCP/IP, will Snort still be able to capture TCP/IP packets? Has anyone tried/done this?
Thanks & Happy Holidays, --Brian To Unsubscribe: send mail to [EMAIL PROTECTED] with "unsubscribe freebsd-questions" in the body of the message
