Snort mailing list archives
Re: TCP ******S* portscan
From: Ricardo SIGNES <samael-snort () lists manxome org>
Date: Fri, 5 Apr 2002 20:38:15 -0500
On Fri, Apr 05, 2002 at 11:31:26PM -0100, Marcel Hauser wrote:
Hi everybody I'am new to Snort, and hopefully this is not in any faq i didn't read ;) Can someone please tell me how this could happen: [problem deleted]
Please make available, via email or web page, the rules you are feeding iptables. Tell us how many interfaces the machine has, and to what they connect. What are the results of `uname -a` on that machine? We'll try to be helpful! -- rjbs
Attachment:
_bin
Description:
Current thread:
- TCP ******S* portscan Marcel Hauser (Apr 05)
- Re: TCP ******S* portscan Matt Kettler (Apr 05)
- Re: TCP ******S* portscan Hauser Marcel (Apr 05)
- Message not available
- Re: TCP ******S* portscan Matt Kettler (Apr 05)
- Re: TCP ******S* portscan "SOLVED" Marcel Hauser (Apr 06)
- Re: TCP ******S* portscan Matt Kettler (Apr 05)
- Re: TCP ******S* portscan Ricardo SIGNES (Apr 05)
- <Possible follow-ups>
- RE: TCP ******S* portscan Andrew Blevins (Apr 05)
- RE: TCP ******S* portscan Hauser Marcel (Apr 05)
- RE: TCP ******S* portscan Marcel Hauser (Apr 05)
- Re: TCP ******S* portscan Chris Keladis (Apr 05)
- RE: TCP ******S* portscan Andrew Blevins (Apr 05)