Snort mailing list archives

Alert problem


From: "Qinglan Li" <li1q () cmich edu>
Date: Sun, 02 Dec 2001 20:36:33 -0500

Hi,

I posted my problem but I still cannot solve it. I tried to test snort 
with using different attacks simulated by Nessus. I use one pc
(redhat7.1) to run both snort and nessus. The IP address is dynamic 
assigned. Whenever I run snort, the alerts are always IDS10 or IDS246, 
like below:
[**] [1:499:1] MISC Large ICMP Packet [**]
[Classification: Potentially Bad Traffic] [Priority: 2]
......
[Xref => http://www.whitehats.com/info/IDS246]
 
Could you please give me any suggestions?
 
Thanx a lot,
 
Laura



_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: