Snort mailing list archives

problem about alert


From: "Qinglan Li" <li1q () cmich edu>
Date: Fri, 16 Nov 2001 11:48:18 -0500

Hi all,


I'm new to snort; now I met a really simple proble. I tried to test
snort by using different attacks; Actually I use Nessus to simulate the
attacks. Whenever I run snort, the alert is always like this:
[**] [1:499:1] MISC Large ICMP Packet [**]
[Classification: Potentially Bad Traffic] [Priority: 2]
......
[Xref => http://www.whitehats.com/info/IDS246]

Could you please give me any suggestion to figure out this problem?

Thanx a lot,

Laura


_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: