Hi Pedro
you can use ZC for that, please take a look at 
userland/examples_zc/zbalance_ipc,
it creates virtual interfaces/queues named <cluster id>@<queue> you can open in 
snort/suricata,
but not in the linux kernel.

Alfredo

> On 10 Aug 2015, at 12:54, pmneveshi5 <[email protected]> wrote:
> 
> Hello,
> 
> I would like to build an app that can control the packet path.
> 
>  EthernetCard
>    ->  PF_ring
>     ->  "my app"
>        -> Snort/Suricata
>        -> Linux Kernel
>        -> Bridge to Another Interface
> 
> "my app" could decide if the packet, would be forward or not
> , to 1 or more of the following:
>  Snort/Suricata
>  Linux Kernel
>  Bridge to Another Interface
> 
> I have read the user guide
> https://svn.ntop.org/svn/ntop/trunk/attic/PF_RING/doc/UsersGuide.pdf
> but is not clear if this is possible.
> 
> I would appreciate any help.
> 
> Thanks,
> 
> Pedro
> _______________________________________________
> Ntop-misc mailing list
> [email protected]
> http://listgateway.unipi.it/mailman/listinfo/ntop-misc

Attachment: signature.asc
Description: Message signed with OpenPGP using GPGMail

_______________________________________________
Ntop-misc mailing list
[email protected]
http://listgateway.unipi.it/mailman/listinfo/ntop-misc

Reply via email to