Snort mailing list archives

Re: Why does a distribution include both dynamic rules *.rules files


From: Joel Esler <jesler () sourcefire com>
Date: Wed, 17 Jul 2013 12:03:47 -0400

On Jul 17, 2013, at 10:03 AM, mulhern <mulhern () gmail com> wrote:

Do they interact or are they completely separate?

Shared Object rules are a different type of rule.  They detect things that cannot be written in the plaintext Snort 
rule language, much more complex functionality is found there.

--
Joel Esler
Senior Research Engineer, VRT
OpenSource Community Manager
Sourcefire

------------------------------------------------------------------------------
See everything from the browser to the database with AppDynamics
Get end-to-end visibility with application monitoring from AppDynamics
Isolate bottlenecks and diagnose root cause in seconds.
Start your free trial of AppDynamics Pro today!
http://pubads.g.doubleclick.net/gampad/clk?id=48808831&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: