From: Richard C. <ric...@gm...> - 2005-02-28 16:33:27
|
Running an IPS in bridge mode is more secure because your interfaces that are blocking the traffic do not have IP addresses associated with them which makes it difficult for a hacker to see your IPS in line much less attack it. Most IPSs run in bridge mode so I would suggest keeping this configuration. You can do your NAT on your router or other network device. -Rich On Mon, 28 Feb 2005 12:42:56 +0700 (ICT), tha...@gb... <tha...@gb...> wrote: > Running Snort-inline in which mode should be better ? > bettwen bridge mode and nat mode .. > > now i'm running my snort-inline with bridge mode and it's work fine for me. > i've place my snort-inline box after my router. > > Are there any criterias to concern about choosing bettween bridge and nat ? > > Just wanna share ideas :) > > Regards, > Thanasin > > ------------------------------------------------------- > SF email is sponsored by - The IT Product Guide > Read honest & candid reviews on hundreds of IT Products from real users. > Discover which products truly live up to the hype. Start reading now. > http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click > _______________________________________________ > Snort-inline-users mailing list > Sno...@li... > https://lists.sourceforge.net/lists/listinfo/snort-inline-users > -- Thanks, Rich Compton |