Snort mailing list archives
Alert problem
From: "Qinglan Li" <li1q () cmich edu>
Date: Sun, 02 Dec 2001 20:36:33 -0500
Hi, I posted my problem but I still cannot solve it. I tried to test snort with using different attacks simulated by Nessus. I use one pc (redhat7.1) to run both snort and nessus. The IP address is dynamic assigned. Whenever I run snort, the alerts are always IDS10 or IDS246, like below:
[**] [1:499:1] MISC Large ICMP Packet [**] [Classification: Potentially Bad Traffic] [Priority: 2] ...... [Xref => http://www.whitehats.com/info/IDS246]
Could you please give me any suggestions? Thanx a lot, Laura _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Alert problem Qinglan Li (Dec 02)
- Hogwash.. Franki (Dec 02)