Snort mailing list archives

sircam removal


From: "Chris Mason" <masonc () masonc com>
Date: Thu, 30 Aug 2001 08:01:20 -0400

My snort setup (1.8.1 with virus rules) runs on my firewall and detects
virus attachments very well, but it doesn't do me much good as the user can
open the email before I ever realise it's gone through. Is there a way to
disable to packets containing those nasty attachments as they go through the
firewall?

Chris Mason
masonc () masonc com
Box 340, The Valley, Anguilla, British West Indies
Tel: 264 497 5670 Fax: 264 497 8463
Take a virtual tour of the island
http://www.anguillaguide.com/ The Anguilla Guide
Find your perfect rental villa www.mycaribbean.com
Talk to me in real time with Instant Messenger: masonc92 () hotmail com
or ICQ 118159388
Signature F331 8AD1 36FB B3B0 DF9F  D95B 8024 D1EA 7450 D50C


_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
http://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: