From: Nathaniel H. <nat...@gm...> - 2004-08-02 16:41:42
|
When snort-inline gets a packet that matches a drop rule does it drop that packet or does the whole TCP connection drop for a certain amount of time. While trying snort-inline with irssi I noticed that I would appear to stay connected while the lag went up to 255+ and then I would rejoin all the channels I used to be in. Where is the code that does this? What new rules does snort-inline add to iptables? iptables -L -n showed no new rules. Nate |