From: Stephan S. <ss...@as...> - 2003-11-27 08:25:35
|
I don't believe that any preprocessor actually blocks at the moment. Correct me if I'm wrong, Rob. :-) Stephan > Does Snort-Inline block on the anomalous activities it finds with the > decoding options, experimental tcp options, ip options, and ttcp alerts? > > Will it actually block these packets or just alert on them like it does > with most of the preprocessors? If it doesn't would it be difficult to > add? -- Stephan Scholz <ss...@as...> | Development Astaro AG | www.astaro.com | Phone +49-721-490069-0 | Fax -55 Visit Astaro at: - Infosecurity France, Paris, Nov. 26-27, 2003 Awards for ASL: - Linux Enterprise Readers' Choice Award: Best Firewall - October 2003 - LinuxWorld Product Excellence Award: Best Security Solution - August 2003 - "Excellent" Infoworld Magazine - August 2003 - "Four Stars" SC Magazine - June 2003 |