Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 11 Jan 2001 22:29:39 +0100
From:      Mark Rowlands <mark.rowlands@minmail.net>
To:        freebsd-questions@freebsd.org
Subject:   what happens first when ipf / snort reject packets
Message-ID:  <01011122293900.01277@web1.tninet.se>

next in thread | raw e-mail | index | archive | help
I have finally switched my home gateway from NT to FreeBSD  woohoo!. and I
got a job so its been a good day already, however :-

I am running 4.2 stable with ipf and ipnat and with snort enabled on the
external interface.

Stupid question I guess, but which takes precedence,  if ipf blocks a packet,
does this mean snort never sees it?  I guess tomorrow I will put the gateway
on a hub and check this out but it would be nice if anyone knows this and can
tell me before I go to bed and stop me lying there thinking about it:-)



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?01011122293900.01277>