6 votes

The current bridge mode seems to be layer 3. Having layer 2 bridge mode option (bump in the wire) with a separate management interface will allow you to add IPS sensors to different segments of the network so you can detect same VLAN pivoting and also setup the snort variable sets for what is being protected instead of having one umbrella IPS sensor at the perimeter. This capability is missing in the marketplace with the exception of FirePOWER. This would be a game changer!

Suggested by: Mike P. GMON GWEB Upvoted: 06 Dec, '19 Comments: 0

Under consideration

