Snort mailing list archives

log every packet of SIP session or attack attempt


From: "Корнев Е.С." <e.kornev () dcn ru>
Date: Fri, 31 May 2013 16:54:38 +0600

I have specific task for Snort daemon - I want it to prevent SIP attacks 
and also log every SIP signaling packet going to or from my server, 
doing it for analysing
objectionable sessions.
Trouble is Snort not record every packet - just several of every SIP 
call or attack. What config options did I miss?



WBR Evgeny


------------------------------------------------------------------------------
How ServiceNow helps IT people transform IT departments:
1. A cloud service to automate IT design, transition and operations
2. Dashboards that offer high-level views of enterprise services
3. A single system of record for all IT processes
http://p.sf.net/sfu/servicenow-d2d-j
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: