Just have read about Snort and Suricata engines. The second one looks more productive in DPI task because of utilizing multi-thread algorithms.

Coult you explain a bit more about "divert" with Suricata to make an inline DPI engine.

Thanks

On 04.03.2015 20:06, sadegh solati wrote:
hi,
you can use divert with snort or suricata.
you can make an inline IPS using them.

On Wednesday, March 4, 2015, Denis Lapshin <[email protected] <mailto:[email protected]>> wrote:

    Hi there!

    Interesting in how to make Deep Packet analyzing engine for my
    OpenBSD box. I'm currently using PF to perform IP headers
    manipulation. But sometimes I need analyze packets data while
    packet traversal.

    Please give some recommendations.

    Thanks.

-- Denis


--
Denis

Reply via email to