Snort mailing list archives

no alert for darpa dataset


From: mehdi maleki <mehdimlk2003 () yahoo com>
Date: Fri, 8 Aug 2014 05:29:02 -0700

hi
A lot of research has been done with snort and darpa dataset while the new default rule set doesn't produce any alert 
for darpa dataset. In this context I have some question of the vulnerability team of snort (especially Mr. elster) and 
all professionals :
 1) Are all threats in the darpa not important today?
 2) Will this action  to reduce the false alarms of today important  threats  ?
 3) Will this action does not weaken the completeness of snort? 
 4) Finally, the rules  sent to us are original!?
best regards.
m. maleki
------------------------------------------------------------------------------
Want fast and easy access to all the code in your enterprise? Index and
search up to 200,000 lines of code with a free copy of Black Duck
Code Sight - the same software that powers the world's largest code
search on Ohloh, the Black Duck Open Hub! Try it now.
http://p.sf.net/sfu/bds
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: