Snort: by date

393 messages starting Jan 02 06 and ending Mar 31 06
Date index | Thread index | Author index


Monday, 02 January

Problem starting Snort Palula Brasil

Tuesday, 03 January

Re: New tool : An interactive snort.stats grapher. Gavin Henry
flow_depth and WMF exploit Jason Haar
RE: flow_depth and WMF exploit Ron Jenkins
Re: flow_depth and WMF exploit Jason Haar
Re: flow_depth and WMF exploit Tom Le
computer browser" service Eric Thlang

Wednesday, 04 January

Re: flow_depth and WMF exploit Brian Caswell
January Chicago 2600 Meeting Information Steven McGrath
Re: Running Multiple Output Plugins Peter J Manis
Re: flow_depth and WMF exploit Frank Knobbe
Re: Running Multiple Output Plugins Jason
Re: flow_depth and WMF exploit purplebag
Re: flow_depth and WMF exploit Jason Haar
Re: Running Multiple Output Plugins Peter J Manis

Thursday, 05 January

IDS policy Manager not updating John Hally
Re: Running Multiple Output Plugins Jason
RE: IDS policy Manager not updating Jeff Dell
Re: flow_depth and WMF exploit Matthew Watchinski
Re: flow_depth and WMF exploit Frank Knobbe
Re: flow_depth and WMF exploit Jason
Re: flow_depth and WMF exploit Frank Knobbe
Re: flow_depth and WMF exploit Jason
Re: flow_depth and WMF exploit Frank Knobbe
Re: flow_depth and WMF exploit Jason
Re: flow_depth and WMF exploit Jason Haar

Friday, 06 January

BASE Project Lead Kevin Johnson

Saturday, 07 January

Interpretation of "offset" in context of "uricontent" keyword Intru Defender
Re: Interpretation of "offset" in context of "uricontent" keyword Jason

Sunday, 08 January

Flow Established Help Ramon L. Fernandez

Monday, 09 January

IDS Policy Manager trouble Larry Wichman
RE: IDS Policy Manager trouble Jeff Dell
anyone have received icmp redirect/echoreply/alternate/mask Undef code ? rmkml

Tuesday, 10 January

Installing on RedHat Shane Presley
Fast [SYN], [FIN, ACK] to port 80 with no data Marc Cozzi
snort database permissions aktivists
Re: snort-mysql db installation and use Peter J Manis
RE: Installing on RedHat patrick
RE: snort-mysql db installation and use patrick
RE: Fast [SYN], [FIN, ACK] to port 80 with no data Hartman, Shane
Re: Fast [SYN], [FIN, ACK] to port 80 with no data Gulfie

Wednesday, 11 January

Re: Installing on RedHat Shane Presley
RE: Installing on RedHat patrick

Thursday, 12 January

Emergency Ports Martin Olsson
Barnyard crash Humes, David G.
Snort for Windows, filter for syslog ? Turnquist,Wayne
RE: Snort for Windows, filter for syslog ? Michael Steele
RE: Flow Established Help Ramon L. Fernandez
Re: Emergency Ports Matthew Watchinski
EUSecWest papers and CanSecWest CFP Dragos Ruiu
BASE 1.2.2 (cindy) released Kevin Johnson
snort on windows 2003 server can not view the sensor Randy Ariyus

Friday, 13 January

sensor/total : 0/0 Randy Ariyus
sensor/total : 0/0 Randy Ariyus
sensor/total : 0/0 Randy Ariyus
First SnortFocus final release 1.0 Dominik Schmid
Re: Flow Established Help Jason Brvenik
Re: sensor/total : 0/0 Kevin Johnson

Saturday, 14 January

FAQ error? -z est? Michael Scheidell
Home_net Peter J Manis

Monday, 16 January

Thomas Zauner's snort and tools overview (was Re: [Snort-users] Installing on RedHat) Alex Butcher, ISC/ISYS
bug listing? Rich Adamson
bleeding rule descriptions? Rich Adamson
Re: bleeding rule descriptions? Matt Jonkman
snort center implementation longint longint
Re: snort center implementation Wes Young
FLoP-1.5.0 released Dirk Geschke
Re: Installing on RedHat Shane Presley
RE: Problem: Win32 v2.4.3 does not start as a Service Lee Clemens

Tuesday, 17 January

RE: Problem: Win32 v2.4.3 does not start as a Service Michael Steele
packet logger & apache Felice Pizzurro
Re: packet logger & apache Wes Young

Wednesday, 18 January

Re: packet logger & apache Felice.pizzurro
Re: packet logger & apache João Mota
problem with service, sensor and base mainscreen Randy Ariyus

Saturday, 21 January

Tagged Packet marco turr
Re: Tagged Packet Dirk Geschke
Re: Tagged Packet marco turr
Re: Tagged Packet Jason

Sunday, 22 January

Re: Tagged Packet Dirk Geschke
Re: Tagged Packet Joel Esler
Re: Tagged Packet Dirk Geschke
Re: Tagged Packet Jason Brvenik
Re: Tagged Packet Dirk Geschke
snort-mysql will not start DonM
Re: snort-mysql will not start Joel Esler
Re: snort-mysql will not start Paul Schmehl
Re: Tagged Packet Jason Brvenik

Monday, 23 January

Re: Tagged Packet Dirk Geschke
output module bug in 2.4.3-RC3 Michael W Cocke
Re: output module bug in 2.4.3-RC3 Michael W Cocke
Re: output module bug in 2.4.3-RC3 Michael W Cocke
Re: output module bug in 2.4.3-RC3 Michael W Cocke
Inline difficulties: tekbot
Re: output module bug in 2.4.3-RC3 Michael W Cocke
Re: output module bug in 2.4.3-RC3 Will Metcalf
Re: Inline difficulties: Will Metcalf
Inline with PF Axton
Re: Inline with PF Will Metcalf

Tuesday, 24 January

Re: output module bug in 2.4.3-RC3 Michael W Cocke
use snort in mode Master in only one card Iacopo Masi

Thursday, 26 January

type_log not working ! longint longint
Black/Nyxem Ron Jenkins
Re: Black/Nyxem Kevin Ponds
WINSNORT.com - Announcing new WinIDS Guides for 2006 Michael Steele
Re: Black/Nyxem Frank Knobbe
Re: Black/Nyxem Matthew Watchinski
Anyone have problems with aanval? Michael Scheidell
On leave Danny Li

Friday, 27 January

Re: Anyone have problems with aanval? Nerijus Krukauskas
RE: Anyone have problems with aanval? Michael Scheidell
Re: Anyone have problems with aanval? Nerijus Krukauskas
RE: Anyone have problems with aanval? Michael Scheidell
RE: Anyone have problems with aanval? Our World Is Here
RE: Inline difficulties: Paul Melson
barnyard Brian Krusic
Re: barnyard Jason
Re: barnyard Paul Schmehl
Undeliverable:Re: barnyard (fwd) Paul Schmehl

Sunday, 29 January

BASE and PHP5 Clemente Aguiar
Re: BASE and PHP5 Kevin Johnson

Monday, 30 January

Feb Chicago2600 Meeting Information Steven McGrath
RE: BASE and PHP5 Miner, Jonathan W (CSC) (US SSA)

Tuesday, 31 January

alerting with snort Hubert Edward kIYIMBA
alerting with snort Hubert Edward kIYIMBA
RE: alerting with snort Will Button
Re: alerting with snort Matt Kettler
snort t-shirt ideas? Brian Caswell
Data required about an old exploit ecmproute

Thursday, 02 February

Snort IPv6 Eric Hines
RE: Snort IPv6 Chas Tomlin
Re: Snort IPv6 Eric Hines
RE: Snort IPv6 Frank Knobbe
RE: Snort IPv6 Rowland, Krisa W ERDC-ITL-MS Contractor
FW: IPv6 Snort Chas Tomlin
Re: Snort IPv6 Martin Roesch
Re: Snort IPv6 Eric Hines

Friday, 03 February

Re: Snort IPv6 Martin Roesch
Anyone using Guile on maces? Michael Scheidell
RE: Anyone using squil on macos? Michael Scheidell
Re: Anyone using Guile on maces? Bamm Visscher
Re: Anyone using squil on macos? Stef

Saturday, 04 February

Snort on Windows: Logging bug or feature?? GrapeVine
Re: Snort on Windows: Logging bug or feature?? Jason

Sunday, 05 February

SNort signature based filtering mac subbu

Monday, 06 February

RE: SNort signature based filtering Michael Scheidell
Re: SNort signature based filtering Eric Hines
Re: SNort signature based filtering Andreas Östling
Re: SNort signature based filtering Brian Caswell

Tuesday, 07 February

freeware Snort based IPS Alan Shimel
Barnyard-2.0, snort-2.4, and a rule that wont display the msg tag. David Gianndrea
Re: Barnyard-2.0, snort-2.4, and a rule that wont display the msg tag. David Gianndrea
Re: Barnyard-2.0, snort-2.4, and a rule that wont display Jeff Kell
Re: Barnyard-2.0, snort-2.4, and a rule that wont display the msg tag. Andreas Östling
Re: snort-mysql will not start CasperLinux
Re: snort-mysql will not start Paul Schmehl
Meet Marty and the Team in Columbia MD on February 9th Christopher Jacob

Wednesday, 08 February

Aanval [ Snort & Syslog ] Console Updates Administration

Thursday, 09 February

Released: Aanval v1.61 (with full event correlation) Administration
Event Correlation Screenshots Administration
Writing/placing custom rules mac subbu
Re: Writing/placing custom rules Joel Esler
Version 0.6 of the OSSEC HIDS is available for download. Daniel Cid

Friday, 10 February

Snort on Windows not Alerting afischer
BASE blank index page Pablo Sanchez
RE: BASE blank index page afischer
RE: BASE blank index page Michael Steele
Snort 2.4.3 - WinPcap 3.1 - Windows XP SP2 afischer
Re: BASE blank index page Kevin Johnson
RE: BASE blank index page Patrick S. Harper
RE: Snort 2.4.3 - WinPcap 3.1 - Windows XP SP2 Lee Clemens
Re: Writing/placing custom rules mac subbu

Saturday, 11 February

kde or gnome app fname lname
Re: kde or gnome app Russ Starr
pass rule not working Bill Essig
Re: pass rule not working Bill Essig

Sunday, 12 February

RE: Snort 2.4.3 - WinPcap 3.1 - Windows XP SP2 Michael Steele

Monday, 13 February

FLoP-1.5.1 released Dirk Geschke
RE: Snort on Windows not Alerting afischer
Snort Security Masters Dojo at EUSecWest Jennifer Steffens
Re: kde or gnome app fname lname
RE: Snort on Windows not Alerting Michael Steele
snort not logging to mysql database Kretzer, Jason R (Big Sandy)
Sguil 0.6.1 Released Bamm Visscher

Wednesday, 15 February

possible exploit Robert T Wyatt
RE: possible exploit Patrick S. Harper
Is this an exploit attempt - or normal activity? CasperLinux
Re: Is this an exploit attempt - or normal activity? Joel Esler
Re: possible exploit Frank Knobbe
Activeworx IDSPM Jason Alexander
Re: possible exploit Robert T Wyatt
Snort reports Pablo Sanchez
RE: Snort reports Hartman, Shane
Re: Snort reports Kevin Johnson

Thursday, 16 February

Please do not use a vacation responder for your list memberships Jeff Nathan
Re: possible exploit Robert T Wyatt

Friday, 17 February

Fields in logs Cédrick BUSCHINI
RE: snort not logging to mysql database Kretzer, Jason R (Big Sandy)
OVERSIZE REQUEST-URI DIRECTORY outbound from my network CasperLinux
RE: OVERSIZE REQUEST-URI DIRECTORY outbound from my network Will Button
CSRA Snort User Group Meeting -- Feb 24th Joel Esler
Snort and chroot issue James Lay

Saturday, 18 February

Oinkmaster v2.0 released. Andreas Östling
Re[2]: Snort reports Mathieu CHATEAU
Re: Re[2]: Snort reports Kevin Johnson

Sunday, 19 February

Re[4]: Snort reports Mathieu CHATEAU

Monday, 20 February

Changing default syslog Facility:Priority for all alerts Mark Tunnell

Tuesday, 21 February

[Fwd: RE: Changing default syslog Facility:Priority for all alerts] Mark Tunnell
modifying priority on certain rules Christina McAghon
Re: modifying priority on certain rules sekure
Re: modifying priority on certain rules Andreas Östling
Re: modifying priority on certain rules Christina McAghon
Help with installing on RH4 R2 Eric Langheinrich

Wednesday, 22 February

Re: modifying priority on certain rules Andreas Östling
Re: modifying priority on certain rules Dirk Geschke
Re: Help with installing on RH4 R2 Dirk Geschke
RE: Help with installing on RH4 R2 Patrick S. Harper
RE: OVERSIZE REQUEST-URI DIRECTORY outbound from my network East, Bill
Help with oinkmaster CasperLinux
Re: modifying priority on certain rules Christina McAghon
Help with installing on RH4 R2 Eric Langheinrich
RE: Help with installing on RH4 R2 Patrick S. Harper
RE: Help with installing on RH4 R2 Patrick S. Harper
Re: Help with oinkmaster Andreas Östling
RE: Help with installing on RH4 R2 Eric Langheinrich
Re: modifying priority on certain rules Frank Knobbe
Barnyard trouble acid_db Jacob, Raymond A Jr
Re: Barnyard trouble acid_db Paul Schmehl
Interesting snort, chroot, syslog behavior James Lay

Thursday, 23 February

RE: Help with installing on RH4 R2 Alex Butcher, ISC/ISYS
BASE, Graphs and NetBSD Rob Ward
RE: BASE, Graphs and NetBSD Michael Steele
Response 1: Barnyard trouble acid_db Jacob, Raymond A Jr
Re: Response 1: Barnyard trouble acid_db Paul Schmehl
CSRA Meeting tomorrow!! Joel Esler
Re: Response 1: Barnyard trouble acid_db Robert T Wyatt
APF with snort Tom Lee

Friday, 24 February

log packet files Felice.pizzurro
Re: log packet files Jason
snort not sending messages to syslog Jim B
Re: snort not sending messages to syslog Eric Hines
RE: Response 1: Barnyard trouble acid_db Jacob, Raymond A Jr
Re: snort not sending messages to syslog Jim B
Re: snort not sending messages to syslog Jim B

Sunday, 26 February

IDS Load Balancer Angel R
RE: IDS Load Balancer Briggs, Bruce
Interesting entries in BASE CasperLinux
Re: Interesting entries in BASE Joel Esler
Re: Interesting entries in BASE CasperLinux
RE: IDS Load Balancer Angel R

Monday, 27 February

Re: IDS Load Balancer Gulfie
Re: IDS Load Balancer barryab63-ia
RE: IDS Load Balancer Richard Bejtlich
Need someone with Pix 501 Experience Timothy A. Holmes
Re: Need someone with Pix 501 Experience David J. Bianco

Tuesday, 28 February

RE: Configure snort to use eth1 Patrick S. Harper
Configure snort to use eth1 Jim B
March 3rd Chicago 2600 Meeting Information Steven McGrath
Re: Configure snort to use eth1 Jim B
RE: Configure snort to use eth1 James Lay
Re: Configure snort to use eth1 Jim B
Re: Configure snort to use eth1 Jim B
Re: Configure snort to use eth1 James Lay
Re: IDS Load Balancer Jeff Coppock

Wednesday, 01 March

Happy National Pig Day Everyone! Jennifer Steffens
update rules Jim B
Re: Happy National Pig Day Everyone! Will Metcalf
RE: Happy National Pig Day Everyone! Richard Bewley
Re: Happy National Pig Day Everyone! Will Metcalf

Thursday, 02 March

Re: Happy National Pig Day Everyone! Jennifer Steffens
RE: update rules Our World Is Here
Re: Configure snort to use eth1 Eric Hines
U.S. Investigating Sale of Snort as Security Risk Jason Haar

Friday, 03 March

RE: U.S. Investigating Sale of Snort as Security Risk Our World Is Here
RE: U.S. Investigating Sale of Snort as Security Risk Bob Konigsberg
Re: update rules Jim B
Snort config Bernhard Heinzel
Trying to figure something if the following makes sense or stupid Turnquist,Wayne

Sunday, 05 March

fail-open nic and snort? Crayola
Re: fail-open nic and snort? Gulfie
Re: fail-open nic and snort? Frank Knobbe
detecting tunnels with Snort Radu Spineanu
Re: snort not sending messages to syslog Joe S

Monday, 06 March

Snort queries!! mac subbu
Does Signature exist alert on DNS queries to a nameserver. Jacob, Raymond A Jr
Re: Does Signature exist alert on DNS queries to a nameserver. Zultan
RE: detecting tunnels with Snort Michael Scheidell
Re: detecting tunnels with Snort Tom Le
Acid search feature Hubert Edward kIYIMBA
Re: Acid search feature Guillaume Arcas

Tuesday, 07 March

RE: Re: detecting tunnels with Snort Michael Scheidell
Database plugins Vanessa Campos
Re: Database plugins Joel Esler
thank you-> Does Signature exist alert on DNS queries to a nameserver. Jacob, Raymond A Jr
HOW DOES ONE STOP an alert file from being Produced? Jacob, Raymond A Jr
Re: [Snort-users] HOW DOES ONE STOP an alert file from being Produced? aktivists
RE: HOW DOES ONE STOP an alert file from being Produced? Jacob, Raymond A Jr
CanSecWest/core06 Vancouver April 3-7 Dragos Ruiu
Re: Re: detecting tunnels with Snort Tom Le

Wednesday, 08 March

Re: HOW DOES ONE STOP an alert file from being Produced? Dirk Geschke
Can snort send alerts to the mysql database without writing an output file? Jacob, Raymond A Jr
sfportscan question Alex Gottschalk
Re: [Snort-users] Can snort send alerts to the mysql database without writing an output file? aktivists
Snort 2.4.4 and Snort 2.6 Beta Available Jennifer Steffens
Webx, GotoMyPc and Loophole Ron Jenkins
Re: Webx, GotoMyPc and Loophole Frank Knobbe
RE: Webx, GotoMyPc and Loophole Ron Jenkins
Re: HOW DOES ONE STOP an alert file from being Produced? Martin Roesch
Re: [Snort-users] HOW DOES ONE STOP an alert file from being Produced? aktivists

Thursday, 09 March

Re: HOW DOES ONE STOP an alert file from being Produced? Dirk Geschke
Re: Re: [Snort-users] Can snort send alerts to the mysql database without writing an output file? Nerijus Krukauskas
Re: Re: [Snort-users] Can snort send alerts to the mysql database without writing an output file? Dirk Geschke
Re: Re: [Snort-users] Can snort send alerts to the mysql database without writing an output file? Nerijus Krukauskas
Re: Re: [Snort-users] Can snort send alerts to the mysql database without writing an output file? Dirk Geschke
Re: HOW DOES ONE STOP an alert file from being Produced? Dirk Geschke
Solved Can snort send alerts to the mysql database without writing an output file? Jacob, Raymond A Jr
Re: HOW DOES ONE STOP an alert file from being Produced? Martin Roesch
Re: Solved Can snort send alerts to the mysql database without writing an output file? Jason

Friday, 10 March

Re: Solved Can snort send alerts to the mysql database without writing an output file? Dirk Geschke
Announce: Compiled Snort 2.4.4 for Windows from WinSnort Michael Steele

Saturday, 11 March

Can snort send alerts to the mysql database w/out ...output file?grep -i output /usr/local/etc/snort/snort.conf Jacob, Raymond A Jr
Re: Can snort send alerts to the mysql database w/out ...output file?grep -i output /usr/local/etc/snort/snort.conf Dirk Geschke
RE: Can snort send alerts to the mysql database w/out ...output file?grep -i output /usr/local/etc/snort/snort.conf Jacob, Raymond A Jr
SQueRT Paul Halliday

Sunday, 12 March

Problems connecting to www.snort.org Michael Scheidell
Re: Problems connecting to www.snort.org Paul Schmehl
Re: Problems connecting to www.snort.org Jennifer Steffens
Re: Problems connecting to www.snort.org Jennifer Steffens

Monday, 13 March

RE: [Snort-devel] Please do not use a vacation responder for your list memberships Michael Scheidell
Tuning sfPortscan Rob Ward
New addition to Snort store! Jennifer Talcott
-S switch not always followed? Michael Scheidell

Tuesday, 14 March

snort cann't stop when logging into mysql pengwei

Wednesday, 15 March

Snort signatures description Pablo Sanchez
Re: Tuning sfPortscan Alex Gottschalk
Re: Tuning sfPortscan Eric Hines
Re: Tuning sfPortscan Alex Gottschalk
Re: Tuning sfPortscan Rob . Ward

Thursday, 16 March

Re: Tuning sfPortscan Gentoo-Wally

Friday, 17 March

Newbie (well sort of) to snort...... SAWYER Charlotte M
Re: Newbie (well sort of) to snort...... Joel Esler

Sunday, 19 March

BASE 1.2.4 (melissa) released Kevin Johnson

Monday, 20 March

snort on linux Steve Moran
RE: snort on linux Patrick S. Harper
RE: snort on linux Steve Moran
Snort Beta v2.6 Ron Jenkins
Re: Snort Beta v2.6 Will Metcalf
Re: Snort Beta v2.6 Jason Brvenik
RE: Snort Beta v2.6 Ron Jenkins
Re: [RGSPAM] RE: Snort Beta v2.6 Jason Brvenik
RE: [RGSPAM] RE: Snort Beta v2.6 Ron Jenkins
Re: [RGSPAM] RE: [RGSPAM] RE: Snort Beta v2.6 Jason Brvenik
RE: [RGSPAM] RE: [RGSPAM] RE: Snort Beta v2.6 Ron Jenkins
Re: snort on linux Pascal Charest
Deep Snort: Inside the Nose of the Pig - Dojo at CanSecWest, April 4th Dragos Ruiu
Oinkmaster installation for snort Hubert Edward kIYIMBA

Tuesday, 21 March

Snort 2.6 and Barnyard sekure
Re: [RGSPAM] RE: [RGSPAM] RE: [RGSPAM] RE: Snort Beta v2.6 Jason Brvenik
RE: snort on linux H3XX  
RE: snort on linux H3XX  
commercial issue guoyi

Wednesday, 22 March

Re: commercial issue Demetri Mouratis

Thursday, 23 March

Update on Sourcefire Acquisition Jennifer Steffens

Monday, 27 March

Stream4 behavior sekure
Frag3 prealloc_frags question Gentoo-Wally
Re: Stream4 behavior Joel Esler
Re: Stream4 behavior sekure

Tuesday, 28 March

Re: Stream4 behavior sekure
Re: Stream4 behavior Lorine Ruotolo
Re: Stream4 behavior Jason Brvenik
Re: Stream4 behavior Matthew Watchinski
Re: Update on Sourcefire Acquisition Randal T. Rioux

Wednesday, 29 March

MS-SQL Probe when listening to streaming radio! ??? Jeffery Gunter
RE: MS-SQL Probe when listening to streaming radio! ??? Briggs, Bruce
Re: MS-SQL Probe when listening to streaming radio! ??? Joel Esler
Re: MS-SQL Probe when listening to streaming radio! ??? Paul Schmehl
Re: MS-SQL Probe when listening to streaming radio! ??? Andrew
Re: MS-SQL Probe when listening to streaming radio Nigel Houghton
Mail test Andrew
Re: Mail test Joel Esler
Stopping Snort Rowland, Krisa W ERDC-ITL-MS Contractor
RE: Stopping Snort Kretzer, Jason R (Big Sandy)
RE: Stopping Snort info+lucretia.ca
RE: Stopping Snort Charles Heselton
RE: Stopping Snort Kretzer, Jason R (Big Sandy)
RE: Stopping Snort Charles Heselton

Thursday, 30 March

ACID tables populated, charts seem OK, but some query results empty subs
RE: ACID tables populated, charts seem OK, but some query results empty Briggs, Bruce
RE: ACID tables populated, charts seem OK, but some query results empty subs
(2.4.4 and Ubuntu on 2.6.12) Odd install from source Rob Munsch
RE: (2.4.4 and Ubuntu on 2.6.12) Odd install from source Braley, Ron
Re: (2.4.4 and Ubuntu on 2.6.12) Odd install from source Rob Munsch

Friday, 31 March

FW: rules are not shown in snortcenter Ks, Mithun (GE Comm Fin, non-ge)