Télécharger la liste

Description du projet

fwsnort translates snort rules into an equivalent
iptables ruleset. By making use of the iptables
string match module, fwsnort can detect
application layer signatures which exist in many
snort rules. fwsnort adds a --hex-string option to
iptables, which allows snort rules that contain
hex characters to be input directly into iptables
rulesets without modification. In addition,
fwsnort makes use of the IPTables::Parse Perl
module in order to (optionally) restrict the snort
rule translation to only those rules that specify
traffic that could potentially be allowed through
an existing iptables policy.

Système requise

System requirement is not defined
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2011-07-29 15:04 Retour à la liste release
1.6

Snort fast_pattern soutien et un support iptables correspondance multiport ont été ajoutés. Les - file d'attente et - les modes NFQUEUE ont été améliorés. Un soutien a été ajouté pour le module conntrack pour le suivi de connexion. Insensible à la casse pattern matching a été ajoutée via l'argument - iCase à l'extension iptables string match. Un couple de bugs mineurs ont été corrigés.
Tags: Stable
Snort fast_pattern support and iptables multiport match support were added. The --QUEUE and --NFQUEUE modes were enhanced. Support was added for the conntrack module for connection tracking. Case-insensitive pattern matching was added via the --icase argument to the iptables string match extension. A couple of minor bugs were fixed.

Project Resources