Categories
fwsnort
'fwsnort' translates snort rules into an equivalent iptables ruleset. By using the iptables string match module, fwsnort detects application layer signatures which exist in many snort rules. It adds a --hex-string option to iptables, which lets users directly input snort rules that contain hex characters into iptables rulesets without modification.
'fwsnort' also uses the IPTables::Parse Perl module to (optionally) restrict the snort rule translation to only those rules that specify traffic that could potentially be allowed through an existing iptables policy.
Last updated 7 Jan, 2008
Versions
0.8.0
0.8.0 beta released 2005-07-11
- Released: 11 Jul, 2005
- Code Maturity: Beta
- Source Archive: http://www.cipherdyne.org/fwsnort/download/fwsn...
- Licenses: GPLv2orlater
- Interfaces: Command Line
User Community and Support
User manpage available in HTML format from http://www.cipherdyne.org/projects/fwknop/docs.html




