Snort mailing list archives

snort filter


From: "Eduard Meiler" <edik () meiler org>
Date: Wed, 26 Sep 2001 22:15:36 +0200

Hallo,

after installing snort I get a lot of these messages about the traffic: Make
it sense to disable this function, or is there a way to filter the
unnecessary information ??

Security Violations

=-=-=-=-=-=-=-=-=-=

Sep 26 21:00:00 wall snort: [1:515:2] MISC source port 53 to <1024
[Classification: Potentially Bad Traffic] [Priority: 2]: {UDP}
193.141.40.1:53 -> 192.168.7.200:53





regards

eduard


Current thread: