# bridge-firewall on Bro

**URL:** https://community.zeek.org/t/bridge-firewall-on-bro/356
**Category:** Zeek
**Created:** [April 5, 2003, 8:34am UTC](https://community.zeek.org/t/bridge-firewall-on-bro/356 "2003-04-05T08:34:41Z")
**Posts on this page:** 2
**Page:** 1

<div class="post-metadata">

### Author: ![Shaofu\_Wang](https://avatars.discourse-cdn.com/v4/letter/s/439d5e/32.png) [@Shaofu\_Wang](https://community.zeek.org/u/Shaofu_Wang)
#### Post date: [April 5, 2003, 8:34am UTC](https://community.zeek.org/t/bridge-firewall-on-bro/356/1 "2003-04-05T08:34:41Z")

</div>

> I'm trying to configure a bridge-firewall with the bro IDS on it to  
> check web traffic (for example). But I've some troubles. Actually, if  
> I launch bro with the http rules, due to dependences I have to load  
> scan rules. And the scan rules try to connect some machines... But my  
> aim is to have an IDS without IP address, so without connection from  
> and to the bridge.
> 
> Due to that, bro give me a lot of warnings and is very long to  
> launch...
> 
> I try to modify the rules via my conf file but there are some kinds I  
> don't understand. For examples, if I change the "skip\_scan\_sources" to  
> an empty value after loading the scan rule (loading via http rule) ;

&nbsp;&nbsp;&nbsp;&nbsp; ~~~~~~~~~~~~ try 127.0.0.1

---

<div class="post-metadata">

### Author: ![system](https://canada1.discourse-cdn.com/flex011/uploads/zeek/original/1X/f09d732bc2cc7c7cc7e35db67cf4e1d5233ce7a7.png) [@system](https://community.zeek.org/u/system)
#### Post date: [May 6, 2022, 3:36pm UTC](https://community.zeek.org/t/bridge-firewall-on-bro/356/2 "2022-05-06T15:36:43Z")

</div>


