Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Run pfsense infront of another router for only the snort capability

    pfSense Packages
    2
    3
    728
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      newbieuser1234 last edited by

      I wanted to know if it's possible to put pfsense infront of another router only for the snort functionality.  I would want to put pfsense in a "transparent mode" or make it so it allows all traffic both ways.  Not act as a packet filter.  What I am trying to get at is I need to keep my ASAs in place, but I want an easy to use snort or some type of IPS/IDS infront of them.  I like the snort gui in pfsense and it's easy to use for me.  Any ideas on how this would work or other IDS/IPS products that are easy to use with a gui?  I assume I would want to use bypass nics? Any help is appreciated. Thanks.

      1 Reply Last reply Reply Quote 0
      • ?
        Guest last edited by

        You can a bridge between 2 interfaces and Snort will see this as seperate interfaces and act as it is in "transparant mode". I did use this once to implement it quickly without the hassle of routing changes and other inconveniences.

        I use routed interfaces in production.

        1 Reply Last reply Reply Quote 0
        • N
          newbieuser1234 last edited by

          So you went away from this.  How did you configure the bridge? Any details?  This is new to me. Thanks.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post

          Products

          • Platform Overview
          • TNSR
          • pfSense
          • Appliances

          Services

          • Training
          • Professional Services

          Support

          • Subscription Plans
          • Contact Support
          • Product Lifecycle
          • Documentation

          News

          • Media Coverage
          • Press
          • Events

          Resources

          • Blog
          • FAQ
          • Find a Partner
          • Resource Library
          • Security Information

          Company

          • About Us
          • Careers
          • Partners
          • Contact Us
          • Legal
          Our Mission

          We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

          Subscribe to our Newsletter

          Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

          © 2021 Rubicon Communications, LLC | Privacy Policy