Skip to main content

Intrusion Prevention with L7-Filter

The purpose of this paper is to present the possibility of using L7-filter as an Intrusion Prevention tool. The goal of this paper is to explain how to use SNORT rules on L7-filter and to show this tool as an alternative to SNORT Inline. This paper will not conclude witch tool is better, it will only bring a new perspective on another use for L7-Filter, of the many that it already has. The motivation for doing this paper comes from doing a Master's Thesis Project which consisted of designing a web application tool for L7-Filter administration as a QoS tool.

32868 (PDF, 1.98MB)

19 Aug 2008
ByRui Santos
Share
All papers are copyrighted

No re-posting of papers is permitted

Subscribe to GIAC’s Monthly Newsletter

Receive expert insights, priority access to certifications, essential updates on regulatory changes and industry developments.