Snort mailing list archives

About rule setting


From: Ryota Kurokawa <r-kurokw () ist osaka-u ac jp>
Date: Wed, 27 Sep 2017 13:20:11 +0900

Hi

I recently started using snort.
I think that it is necessary to set rules when starting IDS mode and recording packets. I was successful to catch icmp packets. For example, can we record packets with a speed higher than a certain speed, such as malicious traffic (such as ping bombs)?

Thanks.

--
Name: Kurokawa Ryota
mail: r-kurokw () ist osaka-u ac jp

_______________________________________________
Snort-users mailing list
Snort-users () lists snort org
Go to this URL to change user options or unsubscribe:
https://lists.snort.org/mailman/listinfo/snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: