Snort mailing list archives

Ultrasurf and Hotspot Shield pattern


From: Ozgur Karatas <okaratas () yandex com>
Date: Thu, 23 May 2013 04:13:34 -0400

Hello all,

I using Snort (Version 2.9.3.1 IPv6 GRE (Build 40)) and I try Snort IPQ mode:

$ iptables -A FORWARD -j QUEUE
$ snort -d -D --daq ipq -Q -c /etc/snort/snort.conf

Snort sniffed incoming and outgoing TCP/UDP traffic. My Snort server running bridge mode. How can I stop ultrasurf and 
hotspotshield traffic? I dont formulate to snort pattern.

Help me please,

Regards

Ozgur

------------------------------------------------------------------------------
Try New Relic Now & We'll Send You this Cool Shirt
New Relic is the only SaaS-based application performance monitoring service 
that delivers powerful full stack analytics. Optimize and monitor your
browser, app, & servers with just a few lines of code. Try New Relic
and get this awesome Nerd Life shirt! http://p.sf.net/sfu/newrelic_d2d_may
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: