Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Snort with wireless access point

    Cache/Proxy
    2
    3
    725
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      corenom last edited by

      I had a question about using Snort with a Wireless Access Point. Will snort (lan) work with an access point connected directly to Pfsense?

      I think Snort (lan) doesn't work if a switch is connected and the data is being sent directly to the other device through the switch and basically bypassing the firewall?

      1 Reply Last reply Reply Quote 0
      • KOM
        KOM last edited by

        Will snort (lan) work with an access point connected directly to Pfsense?

        Sure, why not?  It's just a WLAN.

        I think Snort (lan) doesn't work if a switch is connected and the data is being sent directly to the other device through the switch and basically bypassing the firewall?

        Yes, that's kind of obvious.  Snort on pfSense can only scan the networks attached to it.  It your existing WLAN goes to a switch that's upstream from pfSense then pfSense isn't even path of the network path for your wireless clients.

        1 Reply Last reply Reply Quote 0
        • C
          corenom last edited by

          @KOM:

          Will snort (lan) work with an access point connected directly to Pfsense?

          Sure, why not?  It's just a WLAN.

          I think Snort (lan) doesn't work if a switch is connected and the data is being sent directly to the other device through the switch and basically bypassing the firewall?

          Yes, that's kind of obvious.  Snort on pfSense can only scan the networks attached to it.  It your existing WLAN goes to a switch that's upstream from pfSense then pfSense isn't even path of the network path for your wireless clients.

          Thank you Kom, still a little new at this. Just to confirm, traffic between clients on a WLAN will pass through Pfsense (if directly attached)? Or does it work like a switch and traffic flows between wireless clients without passing through Pfsense?

          1 Reply Last reply Reply Quote 0
          • First post
            Last post