Snort mailing list archives

setting rules for snortsam


From: MEGA Hospedagem <snort () megahospedagem com br>
Date: Mon, 22 Mar 2004 20:01:27 -0300

Hello

I'm setting some rules for snortsam to block attacks.

First file that called my attention was attack-responses.rules
The description says that often there's no false-positives on that.

Is it still valid if I give shell (jailshell) account to my users?
I'm asking that because I see things like "Bad command or filename"
getting blocked.

Thanks,
Luis Fernando



-------------------------------------------------------
This SF.Net email is sponsored by: IBM Linux Tutorials
Free Linux tutorial presented by Daniel Robbins, President and CEO of
GenToo technologies. Learn everything from fundamentals to system
administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: