Browse files

minor dodumentation fixes

git-svn-id: file:///home/mbr/svn/fwsnort_repos/fwsnort/trunk@468 af5c991a-1414-0410-86ad-c3437102cd4a
  • Loading branch information...
1 parent 6130f79 commit 2b3b278cfe1678c2ac959fd357e43b2c5dc4b148 @mrash committed Aug 16, 2008
Showing with 7 additions and 6 deletions.
  1. +5 −4 fwsnort.8
  2. +1 −1 packaging/fwsnort-nodeps.spec
  3. +1 −1 packaging/fwsnort.spec
View
9 fwsnort.8
@@ -22,10 +22,11 @@ network communications are not malicious, this should provide a speedup
for snort_inline since the majority of packets do not then have to be
copied from kernel memory into user memory and subsequently inspected by
snort_inline. There is a tradeoff here in terms of signature detection
-however because snort_inline does not have the opportunity to see all
-packets associated with a session, so stream reassembly and signature
-comparisons against a reassembled buffer do not take place (the stream
-preprocessor - stream4, stream5, etc. - should be disabled).
+however because snort_inline when deployed in this way does not have the
+opportunity to see all packets associated with a session, so stream
+reassembly and signature comparisons against a reassembled buffer do not
+take place (the stream preprocessor - stream4, stream5, etc. - should be
+disabled).
.B fwsnort
(optionally) uses the IPTables::Parse module to parse
View
2 packaging/fwsnort-nodeps.spec
@@ -35,7 +35,7 @@ fwsnort implements a patch against iptables-1.2.7a which adds a
"--hex-string" option which will accept content fields such as
"|0d0a5b52504c5d3030320d0a|". fwsnort is able to translate approximately 60%
of all rules from the Snort-2.3.3 IDS into equivalent iptables rules. For
-more information about the translation strat- egy as well as
+more information about the translation strategy as well as
advantages/disadvantages of the method used by fwsnort to obtain intrusion
detection data, see the README included with the fwsnort sources or browse
to: http://www.cipherdyne.org/fwsnort/
View
2 packaging/fwsnort.spec
@@ -40,7 +40,7 @@ fwsnort implements a patch against iptables-1.2.7a which adds a
"--hex-string" option which will accept content fields such as
"|0d0a5b52504c5d3030320d0a|". fwsnort is able to translate approximately 60%
of all rules from the Snort-2.3.3 IDS into equivalent iptables rules. For
-more information about the translation strat- egy as well as
+more information about the translation strategy as well as
advantages/disadvantages of the method used by fwsnort to obtain intrusion
detection data, see the README included with the fwsnort sources or browse
to: http://www.cipherdyne.org/fwsnort/

0 comments on commit 2b3b278

Please sign in to comment.