Snort mailing list archives
Re: DDOS rules (taqwa ahmed)
From: Alex McDonnell <amcdonnell () sourcefire com>
Date: Tue, 13 Feb 2018 12:03:39 -0500
Generally speaking you want to use your firewall to protect yourself against DDoS, Snort is not a great tool for this because it has to inspect every packet for your DDoS conditions. That being said, I assume this is more of a theoretical question, so what is the DDoS attack type you are trying to mitigate? Alex On Tue, Feb 13, 2018 at 12:00 PM, <snort-sigs-request () lists snort org> wrote:
Send Snort-sigs mailing list submissions to snort-sigs () lists snort org To subscribe or unsubscribe via the World Wide Web, visit https://lists.snort.org/mailman/listinfo/snort-sigs or, via email, send a message with subject or body 'help' to snort-sigs-request () lists snort org You can reach the person managing the list at snort-sigs-owner () lists snort org When replying, please edit your Subject line so it is more specific than "Re: Contents of Snort-sigs digest..." Today's Topics: 1. DDOS rules (taqwa ahmed) ---------------------------------------------------------------------- Message: 1 Date: Tue, 13 Feb 2018 08:03:38 +0000 From: taqwa ahmed <taqwa-315 () hotmail com> To: "snort-sigs () lists snort org" <snort-sigs () lists snort org> Subject: [Snort-sigs] DDOS rules Message-ID: <DB6PR0902MB181307461DA53153642D81C6A7F60@DB6PR0902MB1813. eurprd09.prod.outlook.com> Content-Type: text/plain; charset="iso-8859-1" Dear All, I'm new in snort and I would like to create rules to detect DDOS attacks . Kindly any help will be very appreciated . Thanks in advance, Taqwa -------------- next part -------------- An HTML attachment was scrubbed... URL: <https://lists.snort.org/pipermail/snort-sigs/ attachments/20180213/deed0a58/attachment-0001.html> ------------------------------ Subject: Digest Footer _______________________________________________ Snort-sigs mailing list Snort-sigs () lists snort org https://lists.snort.org/mailman/listinfo/snort-sigs http://www.snort.org Please follow these rules: https://snort.org/faq/what-is- the-mailing-list-etiquette Please visit http://blog.snort.org for the latest news about Snort! ------------------------------ End of Snort-sigs Digest, Vol 9, Issue 11 *****************************************
_______________________________________________ Snort-sigs mailing list Snort-sigs () lists snort org https://lists.snort.org/mailman/listinfo/snort-sigs Please visit http://blog.snort.org for the latest news about Snort! Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads">emerging threats</a>!
Current thread:
- Re: DDOS rules (taqwa ahmed) Alex McDonnell (Feb 13)