Snort mailing list archives
Snort Log Method
From: "Pedro Tedeschi" <pedro.tedeschi () frb-par com>
Date: Thu, 29 Aug 2002 11:13:05 -0300
Hi, If is possible to snort log just one unique event per IP? Like this The IP 1.1.1.1 have attacked 345 times on same signature "WEB-IIS cmd.exe access" But i want to log just one time this attack and discard the others attacks from this signature. Can i do this? Regards, Pedro Tedeschi
Current thread:
- Snort Log Method Pedro Tedeschi (Aug 29)
- Re: Snort Log Method Erek Adams (Aug 29)
- <Possible follow-ups>
- RE: Snort Log Method McCammon, Keith (Aug 29)