Spoink 1.0

Spoink is an output-plugin for snort that works by blocking access to attackers using OpenBSD's pf api.

  Add it to your Download Basket!

 Add it to your Watch List!

0/5

Rate it!
send us
an update
LICENSE TYPE:
BSD License 
USER RATING:
UNRATED
  0.0/5
DEVELOPED BY:
Antonio Benojar
HOMEPAGE:
spoink.sourceforge.net
CATEGORY:
ROOT \ System \ Networking
Spoink is an output-plugin for snort that works by blocking access to attackers using OpenBSD's pf api.

All you need is an OpenBSD machine (or pf compatible), and snort (last version works well).

Spoink uses a pf table and a blocking rule to stop "attackers" accessing our system. To protect from false negatives you must have a whitelist full of ips you want save (see section 2).

Spoink program only blocks attacks defined in snort rules so think for a minute what rules you want to use first.

Last updated on March 27th, 2006

#blocks attacks #network monitoring #pf API #Spoink #attacks #blocker #network

Add your review!

SUBMIT