Snort mailing list archives
ACID: more alerts than I asked for in acid_stat_uaddr... :)
From: Andreas Hasenack <andreas () netbank com br>
Date: Tue, 19 Jun 2001 20:44:05 -0300
ACID from CVS (updated a few minutes ago) I'm in the "today's unique alerts" page. There I see an alert which has: Total: 1 # Sensors: 1 Src addr.: 1 Dst addr.: 1 First and last: the same date/time When I click on, say, "src addr", I get two alerts (the same signature), one from today, and another from another day (the day before, in my case). The same happens if I click on "Total", I get these two results instead of the one that happened today. _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: http://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- ACID: more alerts than I asked for in acid_stat_uaddr... :) Andreas Hasenack (Jun 19)
- <Possible follow-ups>
- Re: ACID: more alerts than I asked for in acid_stat_uaddr... :) roman (Jun 20)
- Re: ACID: more alerts than I asked for in acid_stat_uaddr... :) Andreas Hasenack (Jun 24)
- Re: ACID: more alerts than I asked for in acid_stat_uaddr... :) roman (Jun 25)
- Re: ACID: more alerts than I asked for in acid_stat_uaddr... :) Andreas Hasenack (Jun 25)
- Re: ACID: more alerts than I asked for in acid_stat_uaddr... :) roman (Jun 25)
- Re: ACID: more alerts than I asked for in acid_stat_uaddr... :) Andreas Hasenack (Jun 25)