killall -HUP snort
Whitelisting an IP:
add the following to the /etc/snort/rules/local.rules
pass udp 134.129.111.111 any -> any any ( sid:1000001 ;) pass udp any any -> 134.129.111.111 any ( sid:1000002 ;)
pass udp 134.129.111.111 any -> any any ( sid:1000001 ;) pass udp any any -> 134.129.111.111 any ( sid:1000002 ;)