Snort mailing list archives

RE: Re: detecting tunnels with Snort


From: "Michael Scheidell" <scheidell () secnap net>
Date: Tue, 7 Mar 2006 07:39:26 -0500



-----Original Message-----
From: snort-users-admin () lists sourceforge net 
[mailto:snort-users-admin () lists sourceforge net] On Behalf Of Tom Le
Sent: Monday, March 06, 2006 10:40 PM
To: Michael Scheidell
Cc: Radu Spineanu; snort-users () lists sourceforge net
Subject: [Snort-users] Re: detecting tunnels with Snort


This is assuming you could discern the packet size of the 
encapsulated traffic...


Who cares?  My example had nothing to do with packet size for
encapsulated traffic.
Read the rfc's to get a clue.


-------------------------------------------------------
This SF.Net email is sponsored by xPML, a groundbreaking scripting language
that extends applications into web and mobile media. Attend the live webcast
and join the prime developer group breaking into this new coding territory!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid0944&bid$1720&dat1642
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: