fragmentation?

From: RO|_F (snortflip.5.rolf30_at_spamgourmet.com)
Date: 05/25/05


Date: Wed, 25 May 2005 10:43:04 +0200

Hello,

Short question, maybe someone can give me some information;
I am working on 2 Snort installations; one on Windows (2000) platform, one
on Redhat 9
In documentation of Snort for Windows, they talk about large fragmentation
due to the extensive logging of snort.
I believe in linux, fragmentation is not such an issue because of type of
file system. However, I am not quite sure.
If fragmentation can become an issue after some time, what tools can be used
to 'defrag' ?
Please advice.

Thanks,

Rolf
Utrecht, Netherlands



Relevant Pages

  • Re: Snort as Firewall (WinXP)
    ... Linux is much much simpler that windows .. ... I've come to the conclusion that Snort definitly won't give me ... Subject: Snort as Firewall (WinXP) ... Computer Emergency Response Teams, and Digital Investigations. ...
    (Security-Basics)
  • When does a scan attempt become a focused attack?
    ... I recently set up snort to look for intrusions and am still learning to ... The snort box is Windows and the attacker is happily ... Certified Network & Systems Engineer ... network analyzers. ...
    (Security-Basics)
  • Locking down Snort
    ... You didn't say whether you are using windows or linux Snort. ... when you said IPtables you were referring to *nix, ... port scan on those ports? ...
    (Security-Basics)
  • RE: Need recommendations about IDS Systems
    ... Snort.org has ports to windows available for download. ... Need recommendations about IDS Systems ... I've never found Snort for the Windows ...
    (Security-Basics)
  • Re: Windows IDS
    ... There is a free windows version and also a GUI (no pain) ... Snort for Windows: http://www.snort.org/dl/binaries/win32/ ... PGP / XML GATEWAY APPLIANCE ...
    (Security-Basics)