I suggest just trying the snort package in the way it is now before discussinng new features so everybody in this discussion knows what we are talking about. It's easy to setup and configure. You have to be at RC3 for it to work.
Holger -----Original Message----- From: Tommaso Di Donato [mailto:[EMAIL PROTECTED] Sent: Wednesday, October 04, 2006 8:33 AM To: discussion@pfsense.com Subject: Re: [pfSense-discussion] IDS yet? Sorry.... do you plan to use snort as IDS or as IPS? I think that the former should be easier to implement as a package, but the latter is the direction to follow, in a long term project. Few days ago I saw StillSecure Strataguard, and I found that th eir interface/approach to IPS is very good... If you like to go in that direction, I'll be pleased to help..at least for what I can do... On 10/3/06, Scott Ullrich < [EMAIL PROTECTED]> wrote: On 9/20/06, Scott Ullrich < [EMAIL PROTECTED]> wrote: > There is no IDS package with no intention on creating one. We are > waiting for you all to step up to the plate. I somewhat lied about this. For some reason after seeing your pos t something clicked in my head and I spent a good 35 hours on a IDS package. Upgrade to 1.0-RC3a and you will now find Snort in our packages area. Scott PS: it appears that I also have a sponsor for the package. Will post more information once I secure the funds.