[Firehol-support] NFQ routing for Snort using FireHOL?

Whit Blauvelt whit at transpect.com
Thu Aug 24 15:44:33 BST 2017


I'm considering putting Snort inline to inspect traffic, using the NFQ
(nfqueue) DAQ, which integrates Snort with iptables. I'm looking at a doc at
http://sublimerobots.com/2017/06/snort-ips-with-nfq-routing-on-ubuntu/ with
instructions on doing so.

I know how to add stock iptables rules to a FireHOL config. But I'm
wondering if there's any interest in integrating support for this in FireHOL
directly (or if it already is, and I've missed it)?


