Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Netgate 1100

    Scheduled Pinned Locked Moved IDS/IPS
    pfsense 2.7.2
    4 Posts 2 Posters 144 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jwnazz
      last edited by

      Will snort run on the netgate 1100? I've done a clean install and select all the rules except the extra ones. When i try to start snort on the interface it just keeps loading but never completes. I've checked the logs but there are no error messages. I've waited as long as 30 minutes for it to start.

      1 Reply Last reply Reply Quote 0
      • bmeeksB
        bmeeks
        last edited by

        No, the 1100 is not powerful enough to run ALL the available Snort rules. It will run a small subset. Try enabling the IPS Policy option on the CATEGORIES tab and then choose the "Connectivity" IPS Policy. That will select a minimum but effective rule set. See if Snort starts with that limited set.

        In the vast majority of commercial cases, and in EVERY home user case, using the simple "Connectivity" IPS Policy is plenty of protection. But just remember that the majority of Internet traffic is encrypted these days and Snort will be totally blind to that encrypted traffic unless you implement a MITM solution with a proxy.

        J 1 Reply Last reply Reply Quote 0
        • J
          jwnazz @bmeeks
          last edited by

          @bmeeks
          Snort started without issue with just the "Connectivity" IPS Policy selected. Thanks for the suggestion.

          bmeeksB 1 Reply Last reply Reply Quote 0
          • bmeeksB
            bmeeks @jwnazz
            last edited by

            @jwnazz said in Netgate 1100:

            @bmeeks
            Snort started without issue with just the "Connectivity" IPS Policy selected. Thanks for the suggestion.

            Thank you for the feedback 😀

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.