On 3/15/07, Ying Wong <[EMAIL PROTECTED]> wrote:
Hi all,

I have snort running on the LAN interface instead of a WAN. The reason
for this is so I can block individual users that uses MSN/IM/P2P and not
the other way around.

Snort detects the violations and blocks the private ips accordingly but
it even blocks white listed ips.

/var/db/whitelist shows:

24.83.*.*
24.83.*.*
154.11.128.187
154.11.128.59
64.59.144.90
64.59.144.91
127.0.0.1
192.168.5.90
192.168.5.91
192.168.5.90/32
192.168.5.91/32


PFsense: Version       1.0.1
Snort Version: Version 2.6.1.3 (Build 36)

Anyone have any ideas?

There was a recent update to snort that might fix this. Please upgrade
your snort package.

Scott

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to