Snort: by author

264 messages starting Jun 24 08 and ending Jun 05 08
Date index | Thread index | Author index


Alex

snort-2.8.2.1 and udp alerts Alex (Jun 24)
Re: snort-2.8.2.1 and udp alerts Alex (Jun 25)
Re: snort-2.8.2.1 and udp alerts Alex (Jun 26)
Re: snort-2.8.2.1 and udp alerts Alex (Jun 25)

Alex Alborzfard

Re: Newbie Problem Alex Alborzfard (Jun 17)
Newbie Problem Alex Alborzfard (Jun 17)
Re: Newbie Problem Alex Alborzfard (Jun 17)

Azze, Jason (GPG)

Re: snort + mysql Azze, Jason (GPG) (Apr 23)

Bachelor, Stephen A CTR USSOCOM HQ

Re: frag3_engine policy in heterogeneous env. Bachelor, Stephen A CTR USSOCOM HQ (Jun 25)

bahamin takhtaei

How does a reject rule work? bahamin takhtaei (Apr 29)

Bamm Visscher

Re: [Barnyard-users] " No input plugin found for magic: a1b2c3d4" Issue Bamm Visscher (May 07)
Re: barnyard 2.0.0 & snort-2.8.1 Bamm Visscher (Apr 26)

Berta Alcala

Re: Snort only alert about traffic with an specific IP Berta Alcala (May 29)
Re: Snort only alert about traffic with an specific IP Berta Alcala (May 27)
Snort only alert about traffic with an specific IP Berta Alcala (May 26)
Re: Snort only alert about traffic with an specific IP Berta Alcala (May 30)
Re: Snort only alert about traffic with an specific IP Berta Alcala (May 30)
How Can I display the rule name instead of the ID with ACID? Berta Alcala (May 12)
Re: Snort only alert about traffic with an specific IP Berta Alcala (Jun 02)
Re: How Can I display the rule name instead of the ID with ACID? Berta Alcala (May 13)

Brian Caswell

Re: Team0x42 Snort rules Brian Caswell (Apr 07)

carlopmart

Re: Distributed Snort carlopmart (May 14)

Cees

Re: Excluding a single IP from HOME_NET Cees (Jun 06)
Re: Excluding a single IP from HOME_NET Cees (May 30)
Excluding a single IP from HOME_NET Cees (May 29)
Re: Excluding a single IP from HOME_NET Cees (May 30)

chris ryan

Re: sensor.sid changes (increasing) with new db chris ryan (Jun 16)
sensor.sid changes (increasing) with new db chris ryan (Jun 13)
frag3_engine policy in heterogeneous env. chris ryan (Jun 25)

Christopher Blume

Errors compiling Snort 2.8.1 with IPv6 and Prelude support Christopher Blume (Apr 16)

CoryC

EasyIDS 0.3 released CoryC (May 05)

Craig Van Tassle

Snort Sql DB Craig Van Tassle (Jun 13)

CunningPike

Re: Hi All, CunningPike (Apr 18)
Re: issue with 2.8.2 CunningPike (Jun 09)
Re: alternative to BASE CunningPike (Apr 24)
Re: Oinkmaster not seeing large SID file rules CunningPike (Jun 18)
Re: Jay Moloo/AMERICA/BAX is out of the office. CunningPike (Jun 23)

Curtis LaMasters

Re: ./configure ERROR! Curtis LaMasters (May 15)
Re: Snort sensor with ssl/mysql connection Curtis LaMasters (Jun 13)
Snort sensor with ssl/mysql connection Curtis LaMasters (Jun 13)
./configure ERROR! Curtis LaMasters (May 14)
Re: ./configure ERROR! Curtis LaMasters (May 15)
Re: Snort sensor with ssl/mysql connection Curtis LaMasters (Jun 13)
Distributed Snort Curtis LaMasters (May 14)
Re: ./configure ERROR! Curtis LaMasters (May 14)
Re: Undetected SQL Injection Curtis LaMasters (Jun 24)
Undetected SQL Injection Curtis LaMasters (Jun 23)
Re: ./configure ERROR! Curtis LaMasters (May 15)

David J. Bianco

Re: does any one know how to setup WebEx Meeting Manager. David J. Bianco (Jun 16)
Re: http_inspect preprocessor and Snort sensor performance David J. Bianco (May 22)

Document Retention

help with writing rule Document Retention (Jun 12)

Dragos Ruiu

EUSecWest CFP Closes April 14th (conf May 21/22 2008) Dragos Ruiu (Apr 10)
BA-Con 2008 CFP - Buenos Aires, Sept. 30 / Oct. 1 (closes July 11 2008) Dragos Ruiu (Jun 27)
FInal EUSecWest 2008 Speakers Dragos Ruiu (May 08)

Gianluca Varenni

[ANNOUNCE] WinPcap 4.1 beta4 has been released Gianluca Varenni (May 27)

Greg Bowser

Re: Distributed Snort Greg Bowser (May 14)

Hari Sekhon

Re: Snort 2.6.1 false negative - not detecting port scans Hari Sekhon (Jun 19)
Snort 2.6.1 false negative - not detecting port scans Hari Sekhon (Jun 13)

Harry Hoffman

Re: Anybody have the link for "How to Write Snort Rules" Webinar? Harry Hoffman (Jun 16)
Re: does any one know how to setup WebEx Meeting Manager. Harry Hoffman (Jun 16)
Re: Anybody have the link for "How to Write Snort Rules" Webinar? Harry Hoffman (Jun 17)

Humes, David G.

http_inspect preprocessor and Snort sensor performance Humes, David G. (May 21)

Ilo Lorusso

Snort & Clam-AV Ilo Lorusso (Jun 12)

Jack Pepper

Re: Snort on web servers behind reverse proxies Jack Pepper (May 01)
Re: Excluding a single IP from HOME_NET Jack Pepper (May 30)
Re: Excluding a single IP from HOME_NET Jack Pepper (May 30)

James Lay

Oinkmaster not seeing large SID file rules James Lay (Jun 18)
Re: Oinkmaster not seeing large SID file rules James Lay (Jun 18)

Jason

Re: http_inspect preprocessor and Snort sensor performance Jason (May 21)
Re: Snort on web servers behind reverse proxies Jason (May 01)
Re: Deployment Sizes? was: anyone trying kickfire to improve SQL performance? Jason (May 04)

Jason Brvenik

Re: Snort only alert about traffic with an specific IP Jason Brvenik (May 29)
Re: Snort only alert about traffic with an specific IP Jason Brvenik (May 27)
Re: does any one know how to setup WebEx Meeting Manager. Jason Brvenik (Jun 16)

Jason Haar

tiny buglet in 2.8.2.1 snort.spec Jason Haar (Jun 24)
issue with 2.8.2 Jason Haar (Jun 03)
anyone trying kickfire to improve SQL performance? Jason Haar (May 02)
Re: issue with 2.8.2 Jason Haar (Jun 03)
best way to match on CIFS filenames? Jason Haar (May 22)
Re: Snort sensor with ssl/mysql connection Jason Haar (Jun 13)
Re: Deployment Sizes? was: anyone trying kickfire to improve SQL performance? Jason Haar (May 02)
Re: Distributed Snort Jason Haar (May 14)
Re: Undetected SQL Injection Jason Haar (Jun 23)
Re: issue with 2.8.2 Jason Haar (Jun 05)
Re: issue with 2.8.2 Jason Haar (Jun 04)
Re: does any one know how to setup WebEx Meeting Manager. Jason Haar (Jun 17)
can I write rules to detect certain ftp downloads? Jason Haar (Apr 23)
Re: issue with 2.8.2 Jason Haar (Jun 05)
Re: Snort sensor with ssl/mysql connection Jason Haar (Jun 13)
Re: Deployment Sizes? was: anyone trying kickfire to improve SQL performance? Jason Haar (May 03)

Jay Moloo

Jay Moloo/AMERICA/BAX is out of the office. Jay Moloo (Jun 19)
Jay Moloo/AMERICA/BAX is out of the office. Jay Moloo (Apr 16)

Jeff Dell

Re: IDS Policy Manager 2.0.2 not populating default snort.conf variables? Jeff Dell (Apr 03)

Jeff Kell

Re: Excluding a single IP from HOME_NET Jeff Kell (May 29)
Re: Excluding a single IP from HOME_NET Jeff Kell (May 30)

Jeffrey Denton

Re: error on "make" in so_rules Jeffrey Denton (Apr 20)

JJ Cummings

Re: Snort sensor with ssl/mysql connection JJ Cummings (Jun 13)
Re: sensor.sid changes (increasing) with new db JJ Cummings (Jun 13)
Re: ./configure ERROR! JJ Cummings (May 15)
Re: Snort 2.8.1 - TimeStats() JJ Cummings (Jun 16)
Re: Snort sensor with ssl/mysql connection JJ Cummings (Jun 13)
Re: Snort sensor with ssl/mysql connection JJ Cummings (Jun 13)
Re: How to match the nth packet of a connection? JJ Cummings (Jun 23)
Re: snort + mysql JJ Cummings (Apr 23)

Joe

Re: Aanval 4 - First Public Appearance Joe (Apr 02)

Joel Esler

Re: snort + mysql Joel Esler (Apr 23)
Re: issue with 2.8.2 Joel Esler (Jun 03)
Re: barnyard 2.0.0 & snort-2.8.1 Joel Esler (Apr 26)
Re: Snort on web servers behind reverse proxies Joel Esler (May 01)
Re: [Barnyard-users] " No input plugin found for magic: a1b2c3d4" Issue Joel Esler (May 07)
Re: Undetected SQL Injection Joel Esler (Jun 23)
Re: How Can I display the rule name instead of the ID with ACID? Joel Esler (May 12)
Re: issue with 2.8.2 Joel Esler (Jun 03)
Re: snort + mysql Joel Esler (Apr 23)
Re: Snort sensor with ssl/mysql connection Joel Esler (Jun 13)
Re: Deployment Sizes? was: anyone trying kickfire to improve SQL performance? Joel Esler (May 04)
Re: which VTR rules with 2.8.1 ? Joel Esler (Apr 26)
Re: How Can I display the rule name instead of the ID with ACID? Joel Esler (May 12)
Re: Undetected SQL Injection Joel Esler (Jun 24)
Re: snort + mysql Joel Esler (Apr 23)

Joe S

Re: "S5 pruned sessions from cache" messages Joe S (Apr 29)
"S5 pruned sessions from cache" messages Joe S (Apr 29)
Re: "S5 pruned sessions from cache" messages Joe S (Apr 29)

John Hally

stream5 issues John Hally (Apr 07)
IDS Policy Manager 2.0.2 not populating default snort.conf variables? John Hally (Apr 03)

John York

Vista activation signature John York (Apr 03)

Jon Urionaguena

Building snort Jon Urionaguena (May 14)
Re: Building snort Jon Urionaguena (May 14)
Re: Building snort Jon Urionaguena (May 14)

Jorge Cuevas

statistics, dropped packets, and counters Jorge Cuevas (Apr 25)
Some help with performance issues Jorge Cuevas (Apr 22)

Josep Román

Re: snort-inline on Fedora Core 9 Josep Román (May 23)
snort-inline on Fedora Core 9 Josep Román (May 22)

Justin Heath

Re: Team0x42 Snort rules Justin Heath (Apr 07)
Re: Jay Moloo/AMERICA/BAX is out of the office. Justin Heath (Jun 23)
Re: preprocessor's rules??? Justin Heath (Apr 15)
Re: preprocessor's rules? Justin Heath (Apr 15)

Keith

Re: snort-2.8.2.1 and udp alerts Keith (Jun 25)
Re: snort-2.8.2.1 and udp alerts Keith (Jun 25)
Re: stream5 issues Keith (Apr 07)

Kevin Johnson

BASE 1.4.0 (katherine) released Kevin Johnson (Apr 25)

Konstantinos Agouros

How to match the nth packet of a connection? Konstantinos Agouros (Jun 23)

Lamanary Ramos de Pina

alternative to BASE Lamanary Ramos de Pina (Apr 23)
Re: snort + mysql Lamanary Ramos de Pina (Apr 23)

Laurence Moughan

Hi All, Laurence Moughan (Apr 18)

Leon Ward

Re: Snort only alert about traffic with an specific IP Leon Ward (May 29)
Re: Snort only alert about traffic with an specific IP Leon Ward (May 26)
Re: Help ----- about PERF_PROFILING macro Leon Ward (May 30)
Re: snort-2.8.2.1 and udp alerts Leon Ward (Jun 24)
Re: Undetected SQL Injection Leon Ward (Jun 24)

Lurene A Grenier

Re: Team0x42 Snort rules Lurene A Grenier (Apr 07)

Martin Roesch

Barracuda offer Martin Roesch (May 30)
Re: Emerging Threats: [Fwd: Your message to Snort-sigs awaits moderator approval] Martin Roesch (Apr 21)
Re: Emerging Threats: [Fwd: Your message to Snort-sigs awaits moderator approval] Martin Roesch (Apr 21)
Re: "S5 pruned sessions from cache" messages Martin Roesch (Apr 29)

Matt Jonkman

Emerging Threats: [Fwd: Your message to Snort-sigs awaits moderator approval] Matt Jonkman (Apr 20)
Re: Team0x42 Snort rules Matt Jonkman (Apr 07)

melanie . te . laake

Sflowtool and Snort melanie . te . laake (Apr 15)

Michael Boman

Re: Snort only alert about traffic with an specific IP Michael Boman (May 26)

Mike Guiterman

Re: Anybody have the link for "How to Write Snort Rules" Webinar? Mike Guiterman (Jun 16)
Update on Snort.org Maintenance Mike Guiterman (Apr 11)
BOSS Conference Call For Speakers Deadline - July 15 Mike Guiterman (Jun 30)
Re: Anybody have the link for "How to Write Snort Rules" Webinar? Mike Guiterman (Jun 17)
Re-scheduled maintenance on snort.org and lists.snort.org Mike Guiterman (Apr 23)
Scheduled Maintanence of Snort.org Monday April 14 Mike Guiterman (Apr 11)
Re: Anybody have the link for "How to Write Snort Rules" Webinar? Mike Guiterman (Jun 17)
Snort Scholarship Winners Announced Mike Guiterman (May 15)

moses

Re: Deployment Sizes? was: anyone trying kickfire to improve SQL performance? moses (May 05)

M. Shirk

Re: Team0x42 Snort rules M. Shirk (Apr 07)
Re: Jay Moloo/AMERICA/BAX is out of the office. M. Shirk (Jun 23)
Re: Aanval 4 - Demo Video Online M. Shirk (Apr 25)
Re: Aanval 4 - Demo Video Online M. Shirk (Apr 25)
Re: automated response M. Shirk (Apr 22)

Nathaniel Richmond

Re: stream5 issues Nathaniel Richmond (Apr 07)

Nigel Houghton

Re: ./configure ERROR! Nigel Houghton (May 14)
Re: Jay Moloo/AMERICA/BAX is out of the office. Nigel Houghton (Jun 23)
Re: ./configure ERROR! Nigel Houghton (May 15)
Re: ./configure ERROR! Nigel Houghton (May 15)
Re: Team0x42 Snort rules Nigel Houghton (Apr 08)
Re: How Can I display the rule name instead of the ID with ACID? Nigel Houghton (May 13)
Re: preprocessor's rules? Nigel Houghton (Apr 15)

Paolo

Re: snort + mysql Paolo (Apr 22)
Re: snort + mysql Paolo (Apr 22)

Patrik Nordlén

Re: Undetected SQL Injection Patrik Nordlén (Jun 24)
Re: Snort 2.8.1 Release Candidate Now Available Patrik Nordlén (Apr 05)

Paul Melson

Re: snort + mysql Paul Melson (Apr 24)
Re: snort + mysql Paul Melson (Apr 23)
Re: Team0x42 Snort rules Paul Melson (Apr 07)

Philippe Strauss

2.8.1 or 2.8.2rc1: cannot configure custom output Philippe Strauss (May 09)

Phillip Woellhof

automated response Phillip Woellhof (Apr 20)

Phil Wood

Re: How does a reject rule work? Phil Wood (Apr 29)

Rachmat Hidayat Al-Anshar

preprocessor's rules??? Rachmat Hidayat Al-Anshar (Apr 14)
error on "make" in so_rules Rachmat Hidayat Al-Anshar (Apr 20)
Re: error on "make" in so_rules Rachmat Hidayat Al-Anshar (Apr 20)
"No input plugin found for magic: a1b2c3d4" Issue Rachmat Hidayat Al-Anshar (May 06)
Re: How Can I display the rule name instead of the ID with ACID? Rachmat Hidayat Al-Anshar (May 13)
Re: [Barnyard-users] " No input plugin found for magic: a1b2c3d4" Issue Rachmat Hidayat Al-Anshar (May 07)
Re: How Can I display the rule name instead of the ID with ACID? Rachmat Hidayat Al-Anshar (May 12)
Re: error on "make" in so_rules Rachmat Hidayat Al-Anshar (Apr 22)
Re: [Barnyard-users] "No input plugin found for magic: a1b2c3d4" Issue Rachmat Hidayat Al-Anshar (May 08)
Re: How Can I display the rule name instead of the ID with ACID? Rachmat Hidayat Al-Anshar (May 12)

Randal T. Rioux

Re: Barnyard / PostgreSQL / Solaris Randal T. Rioux (May 24)
Secure Connection - Barnyard -> DB Randal T. Rioux (May 15)
Re: Team0x42 Snort rules Randal T. Rioux (Apr 07)
Barnyard / PostgreSQL / Solaris Randal T. Rioux (May 23)

RA Operations

Aanval 4 - Demo Video Online RA Operations (Apr 25)

rclifton

Re: Snort-users Digest, Vol 23, Issue 12 rclifton (Apr 29)
Re: Snort-users Digest, Vol 24, Issue 1 rclifton (May 01)

renuka prasad

does any one know how to setup WebEx Meeting Manager. renuka prasad (Jun 16)
Re: Anybody have the link for "How to Write Snort Rules" Webinar? renuka prasad (Jun 17)

Roger.Chu

Question - How to compiler 64 bit version of VRT so_rules Roger.Chu (Jun 18)

Russell Fulton

which VTR rules with 2.8.1 ? Russell Fulton (Apr 26)
Re: barnyard 2.0.0 & snort-2.8.1 Russell Fulton (Apr 26)
False +ves for SQL generic sql update injection attempt 13514 Russell Fulton (Apr 27)
barnyard 2.0.0 & snort-2.8.1 Russell Fulton (Apr 26)

sahil aggrawal

Re: snort + mysql sahil aggrawal (Apr 22)
snort + mysql sahil aggrawal (Apr 22)

Sebastien Tricaud

[ANNOUNCE] Wolfotrack 1.0 released Sebastien Tricaud (Apr 28)

Seth

Re: Snort 2.6.1 false negative - not detecting port scans Seth (Jun 18)
Display snort info at user login Seth (Jun 06)

Siim Põder

Re: Aanval 4 - Demo Video Online Siim Põder (Apr 25)

Simon Kok

Anybody have the link for "How to Write Snort Rules" Webinar? Simon Kok (Jun 08)

Snort Releases

Snort 2.8.1 Now Available Snort Releases (Apr 02)
Re: Snort Security Platform 3.0 Beta Now Available Snort Releases (Jun 30)
Snort 2.8.2.1 Now Available Snort Releases (Jun 17)
Snort 2.8.2 Beta Now Available Snort Releases (Apr 23)
Snort 2.8.2 Release Candidate Now Available Snort Releases (May 06)
Snort 2.8.2 Now Available Snort Releases (May 30)
Snort Security Platform 3.0 Beta Now Available Snort Releases (Jun 30)
Snort 2.8.3 Beta Now Available Snort Releases (Jun 24)

Stewart L

Re: Deployment Sizes? was: anyone trying kickfire to improve SQL performance? Stewart L (May 03)
Deployment Sizes? was: anyone trying kickfire to improve SQL performance? Stewart L (May 02)
Re: Deployment Sizes? was: anyone trying kickfire to improve SQL performance? Stewart L (May 03)

TheWell

Team0x42 Snort rules TheWell (Apr 07)

Todd Wease

Re: Barnyard / PostgreSQL / Solaris Todd Wease (May 24)
Re: ./configure ERROR! Todd Wease (May 14)
Re: http_inspect preprocessor and Snort sensor performance Todd Wease (May 21)
Re: best way to match on CIFS filenames? Todd Wease (May 23)
Re: statistics, dropped packets, and counters Todd Wease (Apr 25)
Re: Snort 2.8.1 - TimeStats() Todd Wease (Jun 17)
Re: How does a reject rule work? Todd Wease (Apr 29)
Re: How does a reject rule work? Todd Wease (Apr 29)
Re: Excluding a single IP from HOME_NET Todd Wease (May 29)
Re: Building snort Todd Wease (May 14)
Re: Building snort Todd Wease (May 14)
Re: Newbie Problem Todd Wease (Jun 17)
Re: Newbie Problem Todd Wease (Jun 17)

Tommy Cansanay

Re: Anybody have the link for "How to Write Snort Rules" Webinar? Tommy Cansanay (Jun 17)

Tudor Panaitescu

Re: Snort on web servers behind reverse proxies Tudor Panaitescu (May 01)
Re: Snort on web servers behind reverse proxies Tudor Panaitescu (May 01)
Snort on web servers behind reverse proxies Tudor Panaitescu (May 01)
Re: Snort on web servers behind reverse proxies Tudor Panaitescu (May 01)

tung tran

Re: Stream5 question tung tran (Apr 07)
Stream5 question tung tran (Apr 07)
Re: Stream5 question tung tran (Apr 10)

Wes Young

Snort 2.8.1 - TimeStats() Wes Young (Jun 16)
Re: Snort 2.8.1 - TimeStats() Wes Young (Jun 17)

Will Metcalf

Re: snort-inline on Fedora Core 9 Will Metcalf (May 22)

YARICK

Re: ./configure ERROR! YARICK (May 15)
Re: snort + mysql YARICK (Apr 22)
Re: ./configure ERROR! YARICK (May 14)
Re: Emerging Threats: [Fwd: Your message to Snort-sigs awaits moderator approval] YARICK (Apr 21)

隅主

Help ----- about PERF_PROFILING macro 隅主 (May 30)
One problem about URI pattern Match. 隅主 (Jun 05)