Snort mailing list archives

Re: [Emerging-Sigs] [Snort-sigs] Snort 2.8.6.1 EOL Reminder


From: Jeff Kell <jeff-kell () utc edu>
Date: Thu, 1 Dec 2011 21:45:43 -0500

On 12/1/2011 4:56 PM, Matthew Jonkman wrote:
Thanks for the good words. Both rulesets are quite good, just different focus for each, and different platforms 
supported. 

Agreed, but for those of us that aggregate our layers of defense <grin>
it would be very nice to have a ETPRO and ETPRO-noGPL just as you have
an ET and ET-noGPL set.

With the current framework, you can't easily run VRT and ETPRO
(duplication of filenames and signatures).

You can however easily run sourcefire (non-VRT) plus ET (non PRO).

Jeff

------------------------------------------------------------------------------
All the data continuously generated in your IT infrastructure 
contains a definitive record of customers, application performance, 
security threats, fraudulent activity, and more. Splunk takes this 
data and makes sense of it. IT sense. And common sense.
http://p.sf.net/sfu/splunk-novd2d
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: