Hi everyone,

I'm checking out snort, a network intrusion detection system. I noticed
that when I start the snort daemon to listen on eth0 (my NIC connected to
the Internet), the interface enters promiscuous mode. I know what
promiscuous mode is, but I'm wondering what the impacts of the device's
being on promiscuous mode will be.

eth0 is connected to the DSL bridge (static IP, standard ethernet, no
PPPoE) where it is the only active workstation in the subnet.

Aside from snort, what other NIDS can be recommended for Linux?

 --> Jijo

--
Federico Sevilla III  :: [EMAIL PROTECTED]
Network Administrator :: The Leather Collection, Inc.
GnuPG Key: <http://jijo.leathercollection.ph/jijo.gpg>

_
Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph
To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]

To subscribe to the Linux Newbies' List: send "subscribe" in the body to 
[EMAIL PROTECTED]

Reply via email to