Snort: by date

277 messages starting Jan 02 08 and ending Mar 31 08
Date index | Thread index | Author index


Wednesday, 02 January

Port Negation not working? Paul Melson
custom ruletype (to mysql DB) is broken in snort 2.8.0.1 Agent Smith
Re: Port Negation not working? Todd Wease
Re: custom ruletype (to mysql DB) is broken in snort 2.8.0.1 Todd Wease
Re: custom ruletype (to mysql DB) is broken in snort 2.8.0.1 Agent Smith

Thursday, 03 January

Re: Port Negation not working? Todd Wease
Re: custom ruletype (to mysql DB) is broken in snort 2.8.0.1 Jason Brvenik
Flexresp2 appears broken in 2.8.0.1 James Lay
Re: custom ruletype (to mysql DB) is broken in snort 2.8.0.1 Agent Smith
Re: custom ruletype (to mysql DB) is broken in snort 2.8.0.1 Agent Smith

Friday, 04 January

Re: custom ruletype (to mysql DB) is broken in snort 2.8.0.1 Todd Wease

Saturday, 05 January

Get one specific attack dump from snort dump file. Jorge Luiz Corrêa
Snort & MySQL UxBoD
Re: Snort & MySQL Jason Brvenik
Re: Get one specific attack dump from snort dump file. Joel Esler

Tuesday, 08 January

Re: [Snort-sigs] Sourcefire VRT Certified Snort Rules Update rmkml
Re: [Snort-sigs] Sourcefire VRT Certified Snort Rules Update Will Metcalf
Re: Fw: [HELP] snort stop processing on "Initializing rule chains" issue Rachmat Hidayat Al-Anshar

Wednesday, 09 January

Snort with barnyard chrooted James Lay
Re: Snort with barnyard chrooted JJC
Re: Snort with barnyard chrooted James Lay

Thursday, 10 January

Barnyard 0.2.0 Patch for op_alert_syslog2 Colin Grady

Friday, 11 January

A few issues with Snort Julio Cesar Gazquez
Re: Barnyard 0.2.0 Patch for op_alert_syslog2 Colin Grady
Re: A few issues with Snort JJC
Re: A few issues with Snort Todd Wease

Sunday, 13 January

Snort on Ubuntu LTS Tim Holmes
Re: Snort on Ubuntu LTS UxBoD
Re: Snort on Ubuntu LTS Joel Esler

Monday, 14 January

Fwd: Snort on Ubuntu LTS Joel Esler
Snort.org site down Siddhartha Jain

Tuesday, 15 January

Re: Snort.org site down Chris Libby
Snort 2.8.0.1 segfaults on a specific rule - parser bug (?) Andreas Maus
Re: Snort 2.8.0.1 segfaults on a specific rule - parser bug (?) James Lay
Re: Snort 2.8.0.1 segfaults on a specific rule - parser bug (?) Joel Esler

Wednesday, 16 January

logging abnormal traffic Wim Fournier
Re: logging abnormal traffic Paul Melson
Re: logging abnormal traffic Wim Fournier
Perfmonitor / BPF Question Rob Sharp
Re: Perfmonitor / BPF Question Martin Roesch
Re: Snort 2.8.0.1 segfaults on a specific rule - parser bug (?) Matt Jonkman
Re: Snort 2.8.0.1 segfaults on a specific rule - parser bug (?) Matt Jonkman

Thursday, 17 January

snort and squid Helmut Schneider
Re: snort and squid Paul Melson
Re: snort and squid Helmut Schneider
Re: snort and squid Joel Esler

Friday, 18 January

Re: snort and squid Helmut Schneider
Using antivirus with snort 2.8.x carlopmart
Re: Using antivirus with snort 2.8.x Victor Julien
Re: Using antivirus with snort 2.8.x carlopmart
HTTP_Inspect preproc question Jorge Cuevas
Re: snort and squid Joel Esler
Re: snort and squid Helmut Schneider
Re: snort and squid Seth
Re: snort and squid Helmut Schneider

Saturday, 19 January

Pear Install Problem Rachid Abdelkhalak

Monday, 21 January

Snort in IPCOP Riccardo Castellani
Re: Snort in IPCOP Oink!<noman>
Re: Snort in IPCOP Riccardo Castellani

Tuesday, 22 January

Snort stats! Zakai Kinan
Re: Snort stats! Todd Wease

Wednesday, 23 January

FATAL ERROR: Failed to initialize dynamic engine Rachid Abdelkhalak
Re: FATAL ERROR: Failed to initialize dynamic engine Gustavo Monteiro

Thursday, 24 January

Snort.org problems resolved! Mike Guiterman

Sunday, 27 January

How can write rule with a range IP? bahamin takhtaei
Re: How can write rule with a range IP? Joel Esler
flexresp2 breaks 2.8.0.1? Jason Haar
Re: flexresp2 breaks 2.8.0.1? James Lay

Monday, 28 January

FATAL ERROR: Cannot check flow connection for non-TCP traffic Security Admin (NetSec)
Re: FATAL ERROR: Cannot check flow connection for non-TCP traffic Nathaniel Richmond
Re: FATAL ERROR: Cannot check flow connection for non-TCP traffic JJC
Re: How can write rule with a range IP? CunningPike

Wednesday, 30 January

Barynard compile gives "unable to find mysql headers mysql.h sudhakar govindavajhala
Re: Barynard compile gives "unable to find mysql headersmysql.h Hutchinson, Andrew (Network Security)
Re: Barynard compile gives "unable to find mysql headers mysql.h Pachulski, Keith
Need help in getting barnyard and Snort to work together sudhakar govindavajhala
Re: Need help in getting barnyard and Snort to work together Paul Schmehl
Re: Need help in getting barnyard and Snort to work together sudhakar govindavajhala
More questions on Snort/barnyard sudhakar govindavajhala
Re: More questions on Snort/barnyard sudhakar govindavajhala
Ask free software IDS anomaly Mohamad firman

Thursday, 31 January

Re: Ask free software IDS anomaly tedi . heriyanto
Re: Need help in getting barnyard and Snort to work together Paul Schmehl
Re: More questions on Snort/barnyard Paul Schmehl
ipv6 header scan using snort sahil aggrawal
Re: ipv6 header scan using snort Martin Roesch
Re: More questions on Snort/barnyard sudhakar govindavajhala
[ANNOUNCE] WinPcap 4.1 beta3 has been released Gianluca Varenni
ArcSight CEF Output Plugin for Barnyard 0.2.0 Colin Grady
Snort Windows Vista Install Rodney Daniels
Re: Snort Windows Vista Install CunningPike

Friday, 01 February

Re: Snort Windows Vista Install Michael Steele

Saturday, 02 February

Someone has to analyze Snort logs ? Riccardo Castellani

Sunday, 03 February

(no subject) hawa abdul
Re: (no subject) Joel Esler

Monday, 04 February

Re: Snort Windows Vista Install Michael W Cocke
SQL to purge alerts over 1 month old? Michael W Cocke
Re: SQL to purge alerts over 1 month old? Bachelor, Stephen A CTR USSOCOM HQ
Re: SQL to purge alerts over 1 month old? Paul Schmehl
Re: SQL to purge alerts over 1 month old? Michael W Cocke

Tuesday, 05 February

Snort Rules Availability CoryC
Re: Snort Rules Availability John Pritchard

Wednesday, 06 February

Re: Snort Rules Availability Mike Guiterman
Re: Snort Rules Availability Nigel Houghton
Re: Snort Rules Availability Seth
Re: Snort Rules Availability Joel Esler
Re: [Snort-users] Snort-users Digest, Vol 21, Issue 2 administration
Re: Snort Rules Availability Seth
Re: Snort Rules Availability Joel Esler
Re: Snort Rules Availability Paul Schmehl
Re: Snort Rules Availability CoryC

Thursday, 07 February

problem in getting response from snort 3.0.0.a1.4 sahil aggrawal
Re: [Snort-users] Snort-users Digest, Vol 21, Issue 3 administration

Friday, 08 February

dynamicdetection rules Nerijus Krukauskas

Saturday, 09 February

Re: [snort-users] uricontent pierz

Thursday, 14 February

regarding rule-sets Govind
Does Snort 2.8 work with Barnyard-0.2.0 ? Brian Jameson
Re: Does Snort 2.8 work with Barnyard-0.2.0 ? Joel Esler
Memory issue! Zakai Kinan
Re: Does Snort 2.8 work with Barnyard-0.2.0 ? Paul Schmehl
Re: Memory issue! Joel Esler
making snort go fast David Williams
Re: dynamicdetection rules Richard Bejtlich
Re: making snort go fast Joel Esler
Re: making snort go fast David Williams
Re: making snort go fast JJC
Re: making snort go fast David Williams
Re: Memory issue! Zakai Kinan
Re: Memory issue! Joel Esler
Re: making snort go fast Matt Jonkman

Friday, 15 February

Re: making snort go fast rmkml
Re: dynamicdetection rules Nerijus Krukauskas
Re: making snort go fast Frank Knobbe
Re: Does Snort 2.8 work with Barnyard-0.2.0 ? Randal T. Rioux
Re: Does Snort 2.8 work with Barnyard-0.2.0 ? Colin Grady
Re: Does Snort 2.8 work with Barnyard-0.2.0 ? Joel Esler
Windows Event ID Error Lentz, Jim

Sunday, 17 February

Problems compiling with --enable-inline on CentOS 5.1 David Thibault
Re: Does Snort 2.8 work with Barnyard-0.2.0 ? CoryC
Oinkmaster so_rules, signatures, and .map files CoryC
snort for game traffic analysis Aditya Joshi

Monday, 18 February

Re: Oinkmaster so_rules, signatures, and .map files Magnus Jäder
Undestanding "OVERSIZE CHUNK ENCODING" alerts Julio Cesar Gazquez
Re: Undestanding "OVERSIZE CHUNK ENCODING" alerts Joel Esler
Re: Oinkmaster so_rules, signatures, and .map files Joel Esler
Snort & SDEE Andy Hey
Re: Snort Rules Availability Zakai Kinan

Tuesday, 19 February

Flexresp problems Ward, Rob
Re: Flexresp problems Zakai Kinan
2008 Snort Scholarship Program Mike Guiterman
Snort 2.8.0.2 Now Available Snort Releases
Re: SQL to purge alerts over 1 month old? Zakai Kinan
Re: SQL to purge alerts over 1 month old? Paul Schmehl

Wednesday, 20 February

Snort db archiving script Paul Schmehl

Thursday, 21 February

Bare byte alerts but no non-ASCII characters! Julio Cesar Gazquez
Re: Flexresp problems Todd Wease
Re: Bare byte alerts but no non-ASCII characters! Todd Wease
Re: Bare byte alerts but no non-ASCII characters! Julio Cesar Gazquez
Re: Bare byte alerts but no non-ASCII characters! Jason
Re: Flexresp problems Ward, Rob
Re: Problems compiling with --enable-inline on CentOS 5.1 Todd Wease
Re: Problems compiling with --enable-inline on CentOS 5.1 David Thibault
Re: Problems compiling with --enable-inline on CentOS 5.1 David Thibault
Re: Bare byte alerts but no non-ASCII characters! Todd Wease
Re: Problems compiling with --enable-inline on CentOS 5.1 Todd Wease
Re: Problems compiling with --enable-inline on CentOS 5.1 David Thibault
Webinar on installing and using Snort from the Sourcefire Education Team - Feb. 27, 2008 Mike Guiterman
Re: Problems compiling with --enable-inline on CentOS 5.1 Todd Wease
Re: Problems compiling with --enable-inline on CentOS 5.1 David Thibault
Re: Problems compiling with --enable-inline on CentOS 5.1 Todd Wease
Re: making snort go fast Daniel Proch
Can not compile Snort with Flexresp2 using VC6 under windows ylqids

Friday, 22 February

CanSecWest 2008 Mar 26-28 Dragos Ruiu
Re: Bare byte alerts but no non-ASCII characters! Julio Cesar Gazquez
Re: Bare byte alerts but no non-ASCII characters! Todd Wease
Re: Flexresp problems Zakai Kinan
Re: Flexresp problems Todd Wease

Sunday, 24 February

Re: Flexresp problems Zakai Kinan

Monday, 25 February

Re: Flexresp problems Jeff Nathan
Strange portscan traffic with dest of 169.254.x.x Aaron Giuoco
Re: Strange portscan traffic with dest of 169.254.x.x Paul Melson
Re: Strange portscan traffic with dest of 169.254.x.x CunningPike
Re: Strange portscan traffic with dest of 169.254.x.x Aaron Giuoco
Re: Strange portscan traffic with dest of 169.254.x.x dhottinger
Re: Strange portscan traffic with dest of 169.254.x.x Joel Esler

Tuesday, 26 February

Re: SQL to purge alerts over 1 month old? Terry Burton
Re: Strange portscan traffic with dest of 169.254.x.x Aaron Giuoco

Wednesday, 27 February

Problem with flexresp2 (reset_both) and snort 2.8.0.2 Hermano Pereira

Thursday, 28 February

Snort 2.8.1 Beta Now Available Snort Releases
snort installation problems Astou Mamayek
Re: snort installation problems Bachelor, Stephen A CTR USSOCOM HQ
ftp preprocessor problem serdar uzun

Friday, 29 February

Re: ftp preprocessor problem Todd Wease
Re: ftp preprocessor problem Todd Wease

Saturday, 01 March

Barnyard install problem! Zakai Kinan
Extending CSV output plug-in Kamran Shafi
Re: Extending CSV output plug-in Jason

Sunday, 02 March

How can run Snort on 2 CPU? bahamin takhtaei
Re: How can run Snort on 2 CPU? Paul Melson
So rules issue! Zakai Kinan
Re: So rules issue! Jason
Re: Extending CSV output plug-in Jason
Re: Extending CSV output plug-in Kamran Shafi
Re: Extending CSV output plug-in Jason
Re: Extending CSV output plug-in Kamran Shafi
Re: Extending CSV output plug-in Jason

Monday, 03 March

Re: Barnyard install problem! Seth
Re: Barnyard install problem! Zakai Kinan
Re: Barnyard install problem! Zakai Kinan
Port Aggregator Tap alternatives for snort sensor Stephen Reese
Re: Port Aggregator Tap alternatives for snort sensor Andrew Willy
Re: Port Aggregator Tap alternatives for snort sensor Stephen Reese

Tuesday, 04 March

Re: Port Aggregator Tap alternatives for snort sensor Seth
Re: Port Aggregator Tap alternatives for snort sensor Stephen Reese
Difference of Alerts, Snort Logs, and Tcpdumps frederick sonnichsen
Re: Difference of Alerts, Snort Logs, and Tcpdumps Seth
Re: Difference of Alerts, Snort Logs, and Tcpdumps frederick sonnichsen

Wednesday, 05 March

Denver/Boulder/NoCo Sec Meeting Jennifer Steffens

Monday, 10 March

Changing name of alerts log frederick sonnichsen
Re: Changing name of alerts log Joel Esler
Re: Changing name of alerts log frederick sonnichsen

Tuesday, 11 March

sfportscan tuning Kamran Shafi
Re: sfportscan tuning Joel Esler
Re: sfportscan tuning Kamran Shafi

Wednesday, 12 March

snort-2.8.0.2. Bug in MySQL? salomon.riedo
Re: snort-2.8.0.2. Bug in MySQL? Jack Pepper
Re: sfportscan tuning Joel Esler
Re: snort-2.8.0.2. Bug in MySQL? JJC
Snort 2.8.1 Release Candidate Now Available Snort Releases
Re: sfportscan tuning Kamran Shafi
Logging Reassembled Packets Kamran Shafi
DOS attacks Kamran Shafi

Thursday, 13 March

Re: snort-2.8.0.2. Bug in MySQL? salomon.riedo
Re: snort-2.8.0.2. Bug in MySQL? Jack Pepper
Re: DOS attacks Todd Wease
Re: Logging Reassembled Packets Joel Esler
Re: DOS attacks Todd Wease
Re: DOS attacks Lurene A Grenier
Re: DOS attacks Bob Konigsberg
Re: DOS attacks Zakai Kinan
Re: DOS attacks Kamran Shafi
Re: Logging Reassembled Packets Kamran Shafi
Re: Logging Reassembled Packets Jason
Re: Logging Reassembled Packets Martin Roesch
Re: Logging Reassembled Packets Jeremy
Re: Logging Reassembled Packets Will Metcalf

Friday, 14 March

Re: Logging Reassembled Packets Kamran Shafi
Re: Logging Reassembled Packets Patrik Nordlén
Re: Logging Reassembled Packets John Curry
Re: Logging Reassembled Packets Martin Roesch
Re: DOS attacks Todd Wease
Re: Logging Reassembled Packets Martin Roesch
Re: DOS attacks Giles Coochey

Monday, 17 March

Questions on stream inspection Kamran Shafi

Tuesday, 18 March

Questions on stream inspection Kamran Shafi

Wednesday, 19 March

snort service error 1067 Astou Mamayek

Thursday, 20 March

CanSecWest 2008 PWN2OWN - Mar 26-28 Dragos Ruiu

Friday, 21 March

Recent Snort press coverage you might find interesting Mike Guiterman
Jay Moloo/AMERICA/BAX is out of the office. Jay Moloo

Monday, 24 March

Missing Portscanners in 2.8 - Flow-Portscan vs stream5 frederick sonnichsen
Re: Missing Portscanners in 2.8 - Flow-Portscan vs stream5 frederick sonnichsen

Tuesday, 25 March

Sguil Version 0.7.0 Bamm Visscher

Wednesday, 26 March

Re: Snort 2.8.1 Release Candidate Now Available Patrik Nordlén
Aanval 4 - First Public Appearance RA Operations
Re: Snort 2.8.1 Release Candidate Now Available Justin Heath

Thursday, 27 March

max_header_line_len serdar uzun
Re: Aanval 4 - First Public Appearance Paul Halliday
Re: max_header_line_len Todd Wease
Snort-Wireless, any experience? salomon.riedo
Community feedback on maintaining the OSSRC web site Mike Guiterman
Re: Community feedback on maintaining the OSSRC web site Frank Knobbe

Friday, 28 March

Snort isn't starting at the Ubuntu: jose wilter frazao

Saturday, 29 March

Re: Snort isn't starting at the Ubuntu: Leon
Re: Snort isn't starting at the Ubuntu: Joel Esler

Sunday, 30 March

Re: Snort isn't starting at the Ubuntu: Jack Pepper

Monday, 31 March

Re: Snort isn't starting at the Ubuntu: Leon
Missing Portscan Records in 2.8 frederick sonnichsen