Description
Network intrusion detection and inline prevention can inspect traffic through Snort 3 with NFQUEUE and OpenAppID support. The package installs `snort.service`, rules directories, system users, tmpfiles, and a post-install rule update hook. IDS/IPS configuration can block traffic or expose packet contents, so HOME_NET, rules, and queue policies need careful review.