Snort Newbie Question
Ok I'm a snort newbie so please bare with me. I'm wanting to set up my snort box to be outside the router/hub we have in our office.
So it would look like this:
[Internet] ---> [Modem] ---> [Snort Box] --> [Cable Router] ---> [Ciscso Switch] ----> [Lan]
My box is running slackware 9.1 My box has 2 nic cards. eth0 is set to my cable modem ip and netmask.
eth1 is set to a static internal Lan Ip.
My problem is kinda multiple. If I set 2 GATEWAY="#s" in /etc/rc.d/rc.inet1.conf it picks up my cable gateway # only when I do a route -n. How could I set it to use my internal lan gateway also?
Another problem im having is this. The snort box can see the internet fine but is unable to reach the internal lan (200.0.0.*). The internal lan is unable to see the snort box's internal lan card. The internal lan is unable to see the internet at all.
Is there a setting I completely overlooked somewhere?
Justyn
|