Snort mailing list archives

Finding rules for internal network


From: sEc nErD <umkcguy1978 () yahoo com>
Date: Mon, 7 Feb 2005 13:10:55 -0800 (PST)

Hi ALL,
I am trying to work through a snort box on debian configured by some other engineer for the rule sets.
I have to find why the snort is able to detect outside scans on the network but not able to detect inside scans ,for 
inside scan scanner used is Super Scan
 
Could anybody tell me where exactly to look for in the rule set snort.conf?
or wherever to enable scans monitoring on inside too.thanks


 
 
                
---------------------------------
Do you Yahoo!?
 Yahoo! Mail - You care about security. So do we.

Current thread: