Snort mailing list archives

Re: Unable to get the complete set of IPBlackList


From: Alex McDonnell <amcdonnell () sourcefire com>
Date: Fri, 12 Jul 2019 11:54:02 -0400

Hey, do you mind sharing what doc you saw that mentioned 40k entries? The
ip blacklist hasn't changed in terms of features and is still populated
from the same data and free. It varies from week to week based on
expirations and new additions.

thanks!
Alex McDonnell
Cisco Talos

On Fri, Jul 12, 2019 at 11:05 AM Abirami Sivasubramanian via Snort-sigs <
snort-sigs () lists snort org> wrote:

Hi,

Im trying to use the ip blacklist which is updated by snort. I know the
default ip list is downloaded from talos and the populated to blacklist
rules. But i see the list has very less number of entries(aroung 1100)
compared to what is mentioned in the document(around 40000).
Is there anyway to get the complete set(40000 entries) of IPs that are
blacklisted. Do we have that kind of list publicly available( free or by
paid subscription)?

Thanks
_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules:
https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure
to stay up to date to catch the most <a href="
https://snort.org/downloads/#rule-downloads";>emerging threats</a>!

_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!

Current thread: