Can Snort block destination address?
we have Pfsense 1.2.3 and Snort 18.104.22.168 pkg v. 1.35
The goal is to block torrent traffic.
The system generates alerts and blocks intruders but only the source address.
If there is a rule triggered where the source is my outside address, and the destination is some address on the internet (like I have with torrent traffic) then nothing happens.
The source address is whitelisted (since it is my outside address) and the destination address is not blocked.
Is there a way to make snort block this destination addresses?