|
|
|
|
Snort Forums Archive
Archive Home » Snort Advanced » Snort Engine and TCPDUMP
Please note that the categories listed below represent an archived version of our forums pages. To view the current version and be able to post and reply to threads, please register and login here to go to the full forums pages.
[ Notice: Full Version of This Topic ]
Snort Engine and TCPDUMP
Posted by mehner on May 10, 2005 10:26:53
How dependant upon tcpdump is Snort? I relalize that the two work together and certain libraries (pcap's) are used by both, but is the Snort engine built upon tcpdump techonologies?
My question is focused on trying to determine the threat against a Snort machine when a tcpdump vulnerability is released. Since there have been several DoS and remote exploits concerning tcpdump, should Snort also be looked at? |
|
|
|
|
|