Snort: by author

505 messages starting Sep 30 15 and ending Sep 09 15
Date index | Thread index | Author index


강명훈

Question about a bug that databae storing packet payload 강명훈 (Sep 30)
question about threshold 강명훈 (Jul 14)
Question about the feature that to store a payload in the mysql 강명훈 (Sep 17)
about threshold 강명훈 (Jul 14)
Re: HTML Form URL Encoded 강명훈 (Jul 28)

최병권

Question about Modified Wu-Manber (MWM) algorithm 최병권 (Sep 14)

Aaron Dressin

Re: Confusion around community endpoints / md5 Aaron Dressin (Aug 03)
Confusion around community endpoints / md5 Aaron Dressin (Jul 31)
Re: Confusion around community endpoints / md5 Aaron Dressin (Sep 01)

Ageng Hardani

Hi guys Ageng Hardani (Sep 03)

Alex McDonnell

Re: HTML Form URL Encoded Alex McDonnell (Jul 15)

Al Lewis (allewi)

Re: 32bit snort rpm Al Lewis (allewi) (Sep 30)
Re: 32bit snort rpm Al Lewis (allewi) (Sep 28)
Re: test string not alerting Al Lewis (allewi) (Aug 27)
Re: Block packets using snort with pf_ring Al Lewis (allewi) (Sep 29)
Re: 32bit snort rpm Al Lewis (allewi) (Sep 28)
Re: 32bit snort rpm Al Lewis (allewi) (Sep 14)
Re: Adding a new preprocessor in SNORT Al Lewis (allewi) (Jul 30)
Re: Detecting Hydra tool - FTP attack Al Lewis (allewi) (Jul 03)
Re: related to confi Al Lewis (allewi) (Aug 29)
Re: IPv6 Alerts documentation & Disable alerts Al Lewis (allewi) (Aug 12)
Re: Question about a bug that databae storing packet payload Al Lewis (allewi) (Sep 30)
Re: 32bit snort rpm Al Lewis (allewi) (Sep 29)
Re: Error building Snort 3 alpha 2 on FreeBSD Al Lewis (allewi) (Sep 24)
Re: 32bit snort rpm Al Lewis (allewi) (Sep 15)
Re: 32bit snort rpm Al Lewis (allewi) (Sep 28)
Re: 32bit snort rpm Al Lewis (allewi) (Sep 28)
Re: 32bit snort rpm Al Lewis (allewi) (Sep 28)
Re: What is the best way to enable different rules for different subnets in Snort? Al Lewis (allewi) (Aug 10)
Re: New to snort (inline mode not rejecting) Al Lewis (allewi) (Jul 30)
Re: Payload not fitting rule content detection on snort + snorby Al Lewis (allewi) (Sep 07)
Re: Multi-Pattern Matching Engine in Snort Al Lewis (allewi) (Jul 03)
Re: Detecting w3af scans Al Lewis (allewi) (Sep 30)
Re: SSH Preprocessor bug? Al Lewis (allewi) (Sep 10)
Re: Error building Snort 3 alpha 2 on FreeBSD Al Lewis (allewi) (Sep 24)
Re: New to snort (inline mode not rejecting) Al Lewis (allewi) (Jul 30)
Re: appid in Snort failure Al Lewis (allewi) (Aug 31)
Re: [Snort-devel] Analyze controller area network traffic Al Lewis (allewi) (Jul 15)
Re: Block packets using snort with pf_ring Al Lewis (allewi) (Sep 28)

Alptugay Değrimencioğlu

What is the best way to enable different rules for different subnets in Snort? Alptugay Değrimencioğlu (Aug 10)

aman mangal

Snort in IDS mode aman mangal (Aug 10)

Anshuman Anil Deshmukh

Re: [Signature: MALWARE-OTHER HTTP POST request to a GIF file] Possible false positive Anshuman Anil Deshmukh (Aug 13)
Re: [Signature: MALWARE-OTHER HTTP POST request to a GIF file] Possible false positive Anshuman Anil Deshmukh (Jul 29)
Re: [Signature: MALWARE-OTHER HTTP POST request to a GIF file] Possible false positive Anshuman Anil Deshmukh (Jul 27)
[Signature: MALWARE-OTHER HTTP POST request to a GIF file] Possible false positive Anshuman Anil Deshmukh (Jul 24)

Antonio Augusto Santos

[Survey] Help shape the future of IDSs Antonio Augusto Santos (Jul 11)

Asim Jamshed

Re: Question about http_inspect Asim Jamshed (Sep 21)
Re: Question about http_inspect Asim Jamshed (Sep 21)
Question about http_inspect Asim Jamshed (Sep 20)
Re: Question about http_inspect Asim Jamshed (Sep 21)

Avery Rozar

Re: Pulledpork 500 error, but I do have current certs! Avery Rozar (Aug 28)
Re: Snort PF_Ring Installation Avery Rozar (Jul 10)
Barnyard2 DB error and it will not start Avery Rozar (Jul 07)
Barnyard2 DB error and it will not start Avery Rozar (Jul 07)
Pulledpork 500 error, but I do have current certs! Avery Rozar (Aug 27)

basant subba

Adding a new preprocessor in SNORT basant subba (Jul 30)

Big Whale

Dynamic Preprocessor does not alert and capture packet Big Whale (Jul 08)
Dynamic Preprocessor does not alert and not capturing any packet Big Whale (Jul 08)
Re: Snort config not found error Big Whale (Jul 23)
Re: Snort config not found error Big Whale (Jul 22)
Re: Looking for collaboration Big Whale (Jul 02)
Re: After new sf_dynamic_preprocessor.h get error undefined symbol: DYNAMIC_PREPROC_SETUP Big Whale (Jul 07)
Looking for collaboration Big Whale (Jul 02)
After new sf_dynamic_preprocessor.h get error undefined symbol: DYNAMIC_PREPROC_SETUP Big Whale (Jul 06)
Re: Dynamic Preprocessor does not alert and capture packet Big Whale (Jul 09)
Re: Dynamic Preprocessor does not alert and capture packet Big Whale (Jul 09)
Snort 3 Http Inspect Normalizer Big Whale (Jul 13)
Re: Dynamic Preprocessor not capturing any packet Big Whale (Jul 08)
Re: Dynamic Preprocessor does not alert and capture packet Big Whale (Jul 09)
Dynamic Preprocessor not capturing any packet Big Whale (Jul 07)
Re: Snort config not found error Big Whale (Jul 23)
Snort3 config file Big Whale (Jul 12)
Snort 3 Configuration file Big Whale (Jul 12)
Snort config not found error Big Whale (Jul 22)

Bill Parker

Undefined variable/garbage values encountered in snort-2.9.7.5 Bill Parker (Aug 08)
problem writing in /var/run on FreeBSD 10.x on Snort startup... Bill Parker (Aug 31)
Missing Sanity Checks for malloc()/strdup() in Snort 2.9.8.0 beta Bill Parker (Sep 01)
Suggestion on ./configure for libpcap version Bill Parker (Jul 31)
Improvement to Unified2File.c in Snort-2.9.8.0 beta Bill Parker (Sep 10)
Missing sanity checks for calloc()/segment_calloc()/strdup() in Snort-2.9.8.0 beta Bill Parker (Sep 02)
Addition of protocol IP MOBILITY v6 in file 'protocol_ids.h' Bill Parker (Jul 10)
Error during make of Snort-3.0.0A2 (build 167) Bill Parker (Sep 01)
Add Link-Local Address Network Assignment Block (IPv4) to ipv4.h in Snort 3 Bill Parker (Jul 10)
Compile Times for Snort-3 on Dual Core 2Ghz Bill Parker (Sep 11)
Missing Sanity Checks for malloc() in Snort 2.9.8.0 beta (round 2) Bill Parker (Sep 01)
Add CAN protocol to Snort Bill Parker (Jul 15)
Re: Analyze controller area network traffic Bill Parker (Jul 15)
Updated code on Credit/Debit Card Magnetic Stripe Processing for Snort 2.9.8.x/3.0.0 Bill Parker (Sep 19)
sfbpf_realloc() question Bill Parker (Sep 22)
warnings from 'ar' (archiver) while building Snort-2.9.7.x Bill Parker (Aug 24)
Building Snort-3.0.0a2 system slowdown/resource exhaustion Bill Parker (Aug 26)
Potential Segmentation Violation/Fault in Snort-2.9.8.0 beta Bill Parker (Sep 01)
Snort priv. drop and chroot before/after changing uid/gid Bill Parker (Sep 10)

bmr

Re: Help with install bmr (Sep 18)
Re: Ip detected bmr (Sep 04)
Re: Snort on Dell R430 bmr (Sep 18)

Bruce Rosenthal

snort rule application Bruce Rosenthal (Sep 04)

Bruno Pepper

Re: Detecting w3af scans Bruno Pepper (Sep 30)
Detecting w3af scans Bruno PEPPER (Sep 30)

Carlos J Mateos

Profiling for sfPortscan rules Carlos J Mateos (Sep 25)

Carter Waxman (cwaxman)

Re: 32bit snort rpm Carter Waxman (cwaxman) (Sep 15)
Re: XFF/ExtraData not always logged for drop rules Carter Waxman (cwaxman) (Jul 06)

Charlie

snort.conf - Problem with RULE_PATH & inclide Charlie (Jul 25)
Barnyard2 - Where is the latest beta tar? Charlie (Aug 24)
snorby => cannot load such file -- dm/devise Charlie (Jul 28)
Blacklist not working Charlie (Aug 06)
Missing /usr/lib/x86_64-linux-gnu Charlie (Jul 26)
Fwd: ./configure correct with-mysql-libraries for Rasberry PI 3.18.11-v7+ Charlie (Jul 29)
BASE email smtp port specification Charlie (Aug 02)
barnyard2: WARNING: Can't extract timestamp extension from 'merged.log'using base '' Charlie (Jul 30)
pulledpork V0.7.0 not updating the ../rules/*.rules files Charlie (Aug 08)

Chester Li

Analyze controller area network traffic Chester Li (Jul 15)

C. L. Martinez

Re: Does multiple configs works with snort 2.9.7.5? C. L. Martinez (Sep 01)
Re: Does multiple configs works with snort 2.9.7.5? C. L. Martinez (Sep 01)
Re: Does multiple configs works with snort 2.9.7.5? C. L. Martinez (Sep 01)

C.L. Martinez

Re: Ip detected C.L. Martinez (Sep 04)
Re: Does multiple configs works with snort 2.9.7.5? C.L. Martinez (Aug 31)
Does multiple configs works with snort 2.9.7.5? C.L. Martinez (Aug 30)
Re: Does arp spoof preprocessor works on 2.9.7.3?? C.L. Martinez (Jul 03)
Does arp spoof preprocessor works on 2.9.7.3?? C.L. Martinez (Jul 01)
Re: Does multiple configs works with snort 2.9.7.5? C.L. Martinez (Aug 31)

Costas Kleopa (ckleopa)

Re: Missing sanity checks for calloc()/segment_calloc()/strdup() in Snort-2.9.8.0 beta Costas Kleopa (ckleopa) (Sep 02)
Re: Missing Sanity Checks for malloc()/strdup() in Snort 2.9.8.0 beta Costas Kleopa (ckleopa) (Sep 01)
Re: Potential Segmentation Violation/Fault in Snort-2.9.8.0 beta Costas Kleopa (ckleopa) (Sep 01)
Re: Improvement to Unified2File.c in Snort-2.9.8.0 beta Costas Kleopa (ckleopa) (Sep 10)

Damien Hull

Hardware requirements Damien Hull (Sep 02)

Davis McPherson (davmcphe)

Re: Specific rule for bandwidth Davis McPherson (davmcphe) (Sep 15)

Davison, Charles Robert

Re: Snort PF_Ring Installation Davison, Charles Robert (Jul 10)
Super Fast Snort Considerations Davison, Charles Robert (Aug 30)
Re: Super Fast Snort Considerations Davison, Charles Robert (Aug 31)
FW: Snort PF_Ring Installation Davison, Charles Robert (Jul 23)
Re: Snort PF_Ring Installation Davison, Charles Robert (Jul 10)
Re: barnyard with snort Davison, Charles Robert (Sep 25)
Snorby Portscan Detection Failiure Davison, Charles Robert (Aug 26)
Re: Snort PF_Ring Installation Davison, Charles Robert (Jul 10)
Re: Snort PF_Ring Installation Davison, Charles Robert (Jul 10)
Re: Fwd: ./configure correct with-mysql-libraries for Rasberry PI 3.18.11-v7+ Davison, Charles Robert (Jul 29)
Re: Snort/barnyard2 Install Davison, Charles Robert (Aug 29)
Re: Snort PF_Ring Installation Davison, Charles Robert (Jul 10)
Re: Snort PF_Ring Installation Davison, Charles Robert (Jul 10)
Snort PF_Ring Installation Davison, Charles Robert (Jul 10)
Re: Snort/barnyard2 Install Davison, Charles Robert (Aug 29)
Barnyard 2 Error Davison, Charles Robert (Jul 02)
Re: Snort PF_Ring Installation Davison, Charles Robert (Jul 23)
Re: Snort PF_Ring Installation Davison, Charles Robert (Jul 10)

Dinh, Cuong

Re: Snort IP blacklist issue Dinh, Cuong (Sep 01)

Doug Burks

Re: Barnyard2 alternatives? Doug Burks (Aug 04)
Re: Barnyard2 alternatives? Doug Burks (Aug 04)

Dr. Stephen Gantz

Re: Is Snort 2.9.8.0 Beta Windows Binary Compatible with Windows 10 Home x64? Dr. Stephen Gantz (Sep 28)

Duane Howard

s/file_data/http_client_body? Duane Howard (Sep 22)

Ed Borgoyn (eborgoyn)

Re: Snort priv. drop and chroot before/after changing uid/gid Ed Borgoyn (eborgoyn) (Sep 11)
Re: Improvement to Unified2File.c in Snort-2.9.8.0 beta Ed Borgoyn (eborgoyn) (Sep 10)

elof

Re: Barnyard2 DB error and it will not start elof (Jul 10)

Farnsworth, Robert

barnyard with snort Farnsworth, Robert (Sep 25)
Re: barnyard with snort Farnsworth, Robert (Sep 25)

For Sinton

Re: BASE - Access denied to MySql database For Sinton (Jul 12)

Frederico Araujo

Re: Problem with http_header content modifier Frederico Araujo (Jul 10)
Problem with http_header content modifier Frederico Araujo (Jul 10)
Re: Problem with http_header content modifier Frederico Araujo (Jul 10)
Re: Problem with http_header content modifier Frederico Araujo (Jul 10)

Gabriel Corre

Re: IPv6 Alerts documentation & Disable alerts Gabriel Corre (Aug 12)
appid in Snort failure Gabriel Corre (Aug 31)
Barnyard & Cie gabriel corre (Jul 28)
IP missing in Performance Monitor Gabriel Corre (Sep 16)
IPv6 Alerts documentation & Disable alerts Gabriel Corre (Aug 12)
Re: Specific rule for bandwidth Gabriel Corre (Sep 15)
Re: appid in Snort failure Gabriel Corre (Aug 31)
Re: Specific rule for bandwidth Gabriel Corre (Sep 15)
Re: Understanding the alert file Gabriel Corre (Aug 13)
Specific rule for bandwidth Gabriel Corre (Sep 15)
Re: Specific rule for bandwidth Gabriel Corre (Sep 16)

Gary Liang

Users are not able to login with Wordpress Login Bruteforcing rule Gary Liang (Aug 06)

Geoffrey Serrao

Re: TCP header reserved bits Geoffrey Serrao (Jul 28)
Re: TCP header reserved bits Geoffrey Serrao (Jul 28)
Re: TCP header reserved bits Geoffrey Serrao (Jul 28)

Glenn Forbes Fleming Larratt

Re: RESOLVED: Myricom cards and multiple instances of Snort - how-to? Glenn Forbes Fleming Larratt (Sep 22)
Myricom cards and multiple instances of Snort - how-to? Glenn Forbes Fleming Larratt (Sep 03)

ha dinhphu

Re: Snort IP blacklist issue ha dinhphu (Aug 27)
Re: Snort IP blacklist issue ha dinhphu (Aug 27)

Harley H

Re: port 443 in HTTP port variable list Harley H (Jul 10)
Re: port 443 in HTTP port variable list Harley H (Jul 10)
port 443 in HTTP port variable list Harley H (Jul 10)

Heine Lysemose

Re: snorby => cannot load such file -- dm/devise Heine Lysemose (Jul 28)

Hofer, Aaron (Sioux Falls)

Error building Snort 3 alpha 2 on FreeBSD Hofer, Aaron (Sioux Falls) (Sep 24)
Re: Error building Snort 3 alpha 2 on FreeBSD Hofer, Aaron (Sioux Falls) (Sep 24)

Hui cao

Re: Blacklist not working Hui cao (Aug 10)
Re: Reputation preproc priority showing "blacklist" when set to "whitelist" Hui cao (Jul 28)
Re: Dynamic Preprocessor does not alert and capture packet Hui cao (Jul 09)
Re: Dynamic Preprocessor does not alert and capture packet Hui cao (Jul 09)
Re: Dynamic Preprocessor does not alert and capture packet Hui cao (Jul 09)
Re: Snort 2.9.7.5. bug in Unix Socket plugin on x64 platform Hui cao (Aug 10)
Re: Integer overflow in perfmonitor preprocessor Hui cao (Aug 05)
Re: Dynamic Preprocessor not capturing any packet Hui cao (Jul 08)

Hui Cao (huica)

Re: After new sf_dynamic_preprocessor.h get error undefined symbol: DYNAMIC_PREPROC_SETUP Hui Cao (huica) (Jul 07)
Re: Addition of protocol IP MOBILITY v6 in file 'protocol_ids.h' Hui Cao (huica) (Jul 10)

Hyun Yoo

Re: Save reassembled session if keyword is found. 2 Hyun Yoo (Aug 25)
Save reassembled session if keyword is found. 2 Hyun Yoo (Aug 25)

Infosec

PulledPork "Use of uninitialized value $bin in -f" line 1039 Infosec (Sep 11)

Jacobi, Michael W CIV NSWCCD Philadelphia, 10432

question about using SNORT to look at multiple NICs on one system Jacobi, Michael W CIV NSWCCD Philadelphia, 10432 (Aug 11)
Re: question about using SNORT to look at multiple NICs on one system Jacobi, Michael W CIV NSWCCD Philadelphia, 10432 (Aug 12)

Jaime Nebrera

Re: Super Fast Snort Considerations Jaime Nebrera (Aug 31)
Re: Barnyard2 alternatives? Jaime Nebrera (Aug 06)
Re: Head Body String Matching into Snort Jaime Nebrera (Jul 23)

James Lay

Re: Understanding the alert file James Lay (Aug 11)
Re: snort.conf - Problem with RULE_PATH & inclide James Lay (Jul 25)
Re: 32bit snort rpm James Lay (Sep 28)
Re: Getting snort to block something James Lay (Aug 03)
Re: 32bit snort rpm James Lay (Sep 28)
Re: Snort/barnyard2 Install James Lay (Aug 29)
Re: Getting snort to block something James Lay (Jul 29)
Re: Detecting w3af scans James Lay (Sep 30)
Re: Compiling Barnyard2- fatal error: daq.h: No such file or directory James Lay (Sep 05)
Re: alert base on tcp content James Lay (Jul 27)
Re: pulledpork V0.7.0 not updating the ../rules/*.rules files James Lay (Aug 08)

Jefferson, Shawn

Re: Error 422 with snortrules-snapshot-2972.tar.gz Jefferson, Shawn (Jul 02)
Re: port 443 in HTTP port variable list Jefferson, Shawn (Jul 10)
Re: port 443 in HTTP port variable list Jefferson, Shawn (Jul 10)

Jeremy Hoel

Re: [Signature: MALWARE-OTHER HTTP POST request to a GIF file] Possible false positive Jeremy Hoel (Jul 24)
Re: Nessus activity detection quest Jeremy Hoel (Jul 23)

Jim Hranicky

Re: Barnyard2 alternatives? Jim Hranicky (Aug 04)

Joel Cornett (jocornet)

Re: Help: Piglet Test Harness Joel Cornett (jocornet) (Sep 09)
Re: Help: Piglet Test Harness Joel Cornett (jocornet) (Sep 09)
Re: Snort config not found error (Big Whale) Joel Cornett (jocornet) (Jul 24)
Re: Snort 3 Configuration file (Big Whale) Joel Cornett (jocornet) (Jul 13)
Re: Help: Piglet Test Harness Joel Cornett (jocornet) (Sep 11)
Re: Snort-users Digest, Vol 112, Issue 7 Joel Cornett (jocornet) (Sep 09)

Joel Esler (jesler)

Re: Snort Network Admin Training / Certification Joel Esler (jesler) (Jul 22)
Re: Understanding the alert file Joel Esler (jesler) (Aug 11)
Re: Super Fast Snort Considerations Joel Esler (jesler) (Aug 31)
Re: [SUSPICIOUS] Report malicious viruses site Joel Esler (jesler) (Jul 01)
Re: Nessus activity detection quest Joel Esler (jesler) (Jul 23)
Re: snorby => cannot load such file -- dm/devise Joel Esler (jesler) (Jul 28)
Re: Snort IP blacklist issue Joel Esler (jesler) (Sep 01)
Re: snort rule application Joel Esler (jesler) (Sep 05)
Re: Getting snort to block something Joel Esler (jesler) (Aug 03)
Re: Snort Rules Updates Manually W/O Pulled Pork/Oinkmaster Joel Esler (jesler) (Aug 11)
Re: Empty scada.rules Joel Esler (jesler) (Jul 07)
Re: Super Fast Snort Considerations Joel Esler (jesler) (Aug 30)
Re: Confusion around community endpoints / md5 Joel Esler (jesler) (Sep 01)
RedBorder? Joel Esler (jesler) (Sep 18)
Re: [Signature: MALWARE-OTHER HTTP POST request to a GIF file] Possible false positive Joel Esler (jesler) (Jul 29)
Re: Understanding the alert file Joel Esler (jesler) (Aug 12)
Re: problems with snort rules Joel Esler (jesler) (Sep 09)
Re: SNORT GENERATING SNORT.LOG INSTEAD SNORT.U2 files Joel Esler (jesler) (Jul 10)
Re: Pulledpork missing VRT rules Joel Esler (jesler) (Sep 12)
Re: Question about a bug that databae storing packet payload Joel Esler (jesler) (Sep 30)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Joel Esler (jesler) (Jul 02)
Re: Payload not fitting rule content detection on snort + snorby Joel Esler (jesler) (Sep 07)
Re: Snort Network Admin Training / Certification Joel Esler (jesler) (Jul 22)
Re: Save reassembled session if keyword is found. 2 Joel Esler (jesler) (Aug 25)
Re: Snort Network Admin Training / Certification Joel Esler (jesler) (Jul 23)
Re: Snort Network Admin Training / Certification Joel Esler (jesler) (Jul 23)
Re: XFF/ExtraData not always logged for drop rules Joel Esler (jesler) (Jul 07)

John York

Re: Snort Network Admin Training / Certification John York (Jul 23)

joscabmar3

Head Body String Matching into Snort joscabmar3 (Jul 23)

Justin Merhoff

Trying to learn to read Snort rules Justin Merhoff (Jul 28)

Kaleem Khawaja

Empty scada.rules Kaleem Khawaja (Jul 07)

katwell80

SSH Preprocessor bug? katwell80 (Sep 10)

Kevin Miklavcic

Re: Confusion around community endpoints / md5 Kevin Miklavcic (Jul 31)
Re: Confusion around community endpoints / md5 Kevin Miklavcic (Aug 03)

Kiryukhin Andrey

Snort 2.9.7.5. bug in Unix Socket plugin on x64 platform Kiryukhin Andrey (Aug 06)

Lamont, Brian A.

Re: 32bit snort rpm Lamont, Brian A. (Sep 30)
32bit snort rpm Lamont, Brian A. (Sep 14)
http_methods error starting snort on solaris 9 Lamont, Brian A. (Aug 10)
Re: 32bit snort rpm Lamont, Brian A. (Sep 15)
Re: 32bit snort rpm Lamont, Brian A. (Sep 29)
Re: 32bit snort rpm Lamont, Brian A. (Sep 28)
Re: 32bit snort rpm Lamont, Brian A. (Sep 28)
Re: 32bit snort rpm Lamont, Brian A. (Sep 28)
Re: 32bit snort rpm Lamont, Brian A. (Sep 15)
Re: 32bit snort rpm Lamont, Brian A. (Sep 28)
Re: 32bit snort rpm Lamont, Brian A. (Sep 14)
Re: 32bit snort rpm Lamont, Brian A. (Sep 28)
Re: 32bit snort rpm Lamont, Brian A. (Sep 28)
Solaris 10 service not running, stuck in maintenance. Lamont, Brian A. (Jul 31)
Re: 32bit snort rpm Lamont, Brian A. (Sep 28)

Lavanya Kumar

Fwd: Block packets using snort with pf_ring Lavanya Kumar (Sep 28)
Block packets using snort with pf_ring Lavanya Kumar (Sep 27)

Lenny Hansson

Duke-APT Sigs Lenny Hansson (Jul 24)

Lil Evil

DAQ NFQ ipv6 and ipv4 dual support Lil Evil (Sep 21)

lists () packetmail net

Re: PCRE /PR modifiers lists () packetmail net (Jul 07)
Re: Trying to learn to read Snort rules lists () packetmail net (Jul 28)

Marcio Guerreiro

Re: SNORT GENERATING SNORT.LOG INSTEAD SNORT.U2 files Marcio Guerreiro (Jul 10)
Detecting Hydra tool - FTP attack Marcio Guerreiro (Jul 03)
SNORT GENERATING SNORT.LOG INSTEAD SNORT.U2 files Marcio Guerreiro (Jul 10)
alert base on tcp content Marcio Guerreiro (Jul 27)
encrypted traffic Marcio Guerreiro (Aug 10)

Martin Aman

Are there examples for SO rules including ByteExtract? Martin Aman (Jul 16)

Marty Roesch (maroesch)

Re: Daemonlogger -- Response to Marty Roesch Marty Roesch (maroesch) (Aug 04)
Re: Daemonlogger -- Response to Marty Roesch Marty Roesch (maroesch) (Jul 24)
Re: Daemonlogger -- Response to Marty Roesch Marty Roesch (maroesch) (Jul 24)
Re: Daemonlogger -- Response to Marty Roesch Marty Roesch (maroesch) (Jul 24)
Re: Daemonlogger -- Response to Marty Roesch Marty Roesch (maroesch) (Jul 24)
Re: daemonlogger buggy? Marty Roesch (maroesch) (Jul 24)

Marty Smith

Script Question Marty Smith (Jul 23)

mehdi maleki

low detection rate mehdi maleki (Aug 04)
dataset mehdi maleki (Aug 04)

Mehmet Aksu

How can i Develop Snort ? Mehmet Aksu (Aug 13)
Integration Snort with FloodLight SDN Controller Mehmet Aksu (Aug 13)

Michael Steele

Re: BASE email smtp port specification Michael Steele (Aug 02)
Re: pulledpork V0.7.0 not updating the ../rules/*.rules files Michael Steele (Aug 08)
Re: Compiling Barnyard2- fatal error: daq.h: No such file or directory Michael Steele (Sep 05)
Compiling Barnyard2- fatal error: daq.h: No such file or directory Michael Steele (Sep 04)

Mike Cox

Re: Integer overflow in perfmonitor preprocessor Mike Cox (Aug 11)
Re: Reputation preproc priority showing "blacklist" when set to "whitelist" Mike Cox (Jul 29)
Reputation preproc priority showing "blacklist" when set to "whitelist" Mike Cox (Jul 28)
Integer overflow in perfmonitor preprocessor Mike Cox (Aug 05)
Re: Perfmon total_alerts tracking bug Mike Cox (Aug 28)
Re: XFF/ExtraData not always logged for drop rules Mike Cox (Jul 06)

Mike Hendrie

Snort/barnyard2 Install Mike Hendrie (Aug 29)

Mohiuddin Ebna Kawsar

How to get packet's from my host to server in snort Mohiuddin Ebna Kawsar (Aug 12)

Nageswara Rao A.V.K (navk)

Re: Undefined variable/garbage values encountered in snort-2.9.7.5 Nageswara Rao A.V.K (navk) (Aug 09)
Re: Undefined variable/garbage values encountered in snort-2.9.7.5 Nageswara Rao A.V.K (navk) (Aug 09)

Nick Randolph

Re: PCRE /PR modifiers Nick Randolph (Jul 07)
Re: Empty scada.rules Nick Randolph (Jul 13)

Nitin Khokher

related to confi Nitin Khokher (Aug 29)

Oleg Ruso

Nessus activity detection quest Oleg Ruso (Jul 22)
Отв: Nessus activity detection quest Oleg Ruso (Jul 24)
Пересл: Nessus activity detection quest Oleg Ruso (Jul 23)
BASE - Access denied to MySql database Oleg Ruso (Jul 12)

Orion Christopher

Help with install Orion Christopher (Sep 18)
Re: Help with install Orion Christopher (Sep 18)

Patrick Mullen

Re: Are there examples for SO rules including ByteExtract? Patrick Mullen (Jul 16)

Paulo Angelo

Hogzilla, Anomaly-based IDS, First Release Announcement Paulo Angelo (Sep 30)

Pavel Alexandrov

Sensor Pavel Alexandrov (Sep 04)

Prosenjit Chatterjee

Maximum throughput using SNORT and Intel(R) Server Board S4600LH2/ S4600LT2 ?? Prosenjit Chatterjee (Sep 08)

Rabee Shalaldeh

LFI attack snort rule Rabee Shalaldeh (Aug 28)

Rahul Burman (rahburma)

Re: Question about http_inspect Rahul Burman (rahburma) (Sep 21)
Re: Question about http_inspect Rahul Burman (rahburma) (Sep 21)

Research

Snort Subscriber Rules Update 2015-07-14 Research (Jul 14)
Snort Subscriber Rules Update 2015-07-16 Research (Jul 16)
Snort Subscriber Rules Update 2015-07-22 Research (Jul 22)
Snort Subscriber Rules Update 2015-07-28 Research (Jul 28)
Snort Subscriber Rules Update 2015-07-08 Research (Jul 08)
Snort Subscriber Rules Update 2015-07-30 Research (Jul 30)
Monitoring workstation for Snort - Virtualization question Research (Jul 22)
Snort Subscriber Rules Update 2015-08-11 Research (Aug 11)
Snort Subscriber Rules Update 2015-08-06 Research (Aug 06)
Snort Subscriber Rules Update 2015-08-12 Research (Aug 12)
Snort Subscriber Rules Update 2015-09-03 Research (Sep 03)
Snort Subscriber Rules Update 2015-08-25 Research (Aug 25)
Snort Subscriber Rules Update 2015-09-22 Research (Sep 22)
Snort Subscriber Rules Update 2015-08-04 Research (Aug 04)
Snort Subscriber Rules Update 2015-09-15 Research (Sep 15)
Negative timestamp in PCAP from Snort Research (Jul 30)
Snort Subscriber Rules Update 2015-09-10 Research (Sep 10)
Snort Subscriber Rules Update 2015-09-29 Research (Sep 29)
Snort Subscriber Rules Update 2015-07-02 Research (Jul 02)
Snort Subscriber Rules Update 2015-08-27 Research (Aug 27)
Snort Subscriber Rules Update 2015-07-10 Research (Jul 10)
Snort Subscriber Rules Update 2015-07-07 Research (Jul 07)
Snort Subscriber Rules Update 2015-09-17 Research (Sep 17)
Snort Subscriber Rules Update 2015-09-01 Research (Sep 01)
Snort Subscriber Rules Update 2015-09-24 Research (Sep 24)
Snort Subscriber Rules Update 2015-09-08 Research (Sep 08)

Richard Monk

Re: Barnyard2 alternatives? Richard Monk (Aug 04)
Barnyard2 alternatives? Richard Monk (Aug 04)

ricky gutierrez

Ip detected ricky gutierrez (Sep 04)

Robert Cotter

Update to REAME.decode on Snort.org request Robert Cotter (Jul 28)

Russ

Re: Snort-devel Digest, Vol 107, Issue 19 Russ (Jul 06)
Re: Snort 3 Http Inspect Normalizer Russ (Jul 13)
Re: Does multiple configs works with snort 2.9.7.5? Russ (Sep 01)
Re: Head Body String Matching into Snort Russ (Jul 23)
Re: Question about http_inspect Russ (Sep 21)
Re: Snort in IDS mode Russ (Aug 11)
Re: Dynamic Preprocessor does not alert and capture packet Russ (Jul 09)
Re: 32bit snort rpm Russ (Sep 15)
Re: Enquiries regarding search engine in Snort 3.0 Extras Russ (Aug 07)
Re: Add Link-Local Address Network Assignment Block (IPv4) to ipv4.h in Snort 3 Russ (Jul 13)
Re: 32bit snort rpm Russ (Sep 28)
Re: Question about Modified Wu-Manber (MWM) algorithm Russ (Sep 15)
Re: Snort++: MIND THE STACK when mixing C and LUA! Russ (Jul 16)
Re: Looking for collaboration Russ (Jul 02)
Re: Adding a new preprocessor in SNORT Russ (Jul 30)
Re: Snort config not found error Russ (Jul 22)
Re: Dynamic Preprocessor does not alert and capture packet Russ (Jul 09)
Re: Error during make of Snort-3.0.0A2 (build 167) Russ (Sep 01)
Re: Question about http_inspect Russ (Sep 21)
Re: Does multiple configs works with snort 2.9.7.5? Russ (Sep 01)
Re: Dynamic Preprocessor does not alert and capture packet Russ (Jul 09)

Saeed Alqahtani

Running DARPA2000 datasets in Snort within MyCloud!! Saeed Alqahtani (Aug 08)

Sancho Panza

Snort++: MIND THE STACK when mixing C and LUA! Sancho Panza (Jul 16)

Schwaiger, Markus

Barnyard2 error: FATAL ERROR: /etc/snort/barnyard2.conf(14) Unknown output plugin: "log_syslog_full" Schwaiger, Markus (Jul 02)

Scott Guthrie

Snort Rules Updates Manually W/O Pulled Pork/Oinkmaster Scott Guthrie (Aug 11)

Sean

test string not alerting Sean (Aug 27)
Re: test string not alerting Sean (Aug 27)

setests setests

Snort on Dell R430 setests setests (Sep 18)

Shirkdog

Re: Snort IP blacklist issue Shirkdog (Aug 27)
Re: Snort IP blacklist issue Shirkdog (Aug 27)
Re: Pulledpork 500 error, but I do have current certs! Shirkdog (Aug 27)
Re: pulledpork V0.7.0 not updating the ../rules/*.rules files Shirkdog (Aug 08)

Simon Wesseldine

Re: [SUSPICIOUS] Report malicious viruses site Simon Wesseldine (Jul 01)

Siti Farhana Binti Lokman

Help: Piglet Test Harness Siti Farhana Binti Lokman (Sep 02)
Multi-Pattern Matching Engine in Snort Siti Farhana Binti Lokman (Jul 03)
Re: Snort-users Digest, Vol 112, Issue 7 Siti Farhana Binti Lokman (Sep 09)
Bugs in Piglet Test Harness? Siti Farhana Binti Lokman (Sep 08)
Enquiries regarding search engine in Snort 3.0 Extras Siti Farhana Binti Lokman (Aug 06)

snort

Re: test string not alerting snort (Aug 27)
Re: [Snort-devel] Analyze controller area network traffic snort (Jul 15)
Re: FW: Snort PF_Ring Installation snort (Jul 23)
Re: [Snort-devel] Analyze controller area network traffic snort (Jul 15)

Snort Releases

Snort++ Alpha 2 Available Now Snort Releases (Jul 23)
Snort++ Alpha 2 Available Now Snort Releases (Jul 06)
Snort++ Build 167 Available Now Snort Releases (Aug 31)
Snort++ Build 163 Available Now Snort Releases (Aug 03)
Snort 2.9.7.5 Now Available Snort Releases (Jul 23)
Snort 2.9.7.6 Now Available Snort Releases (Sep 30)
Snort++ Build 167 Available Now Snort Releases (Aug 31)
Snort 2.9.7.5 Now Available Snort Releases (Jul 23)
Snort++ Alpha 2 Available Now Snort Releases (Jul 06)
Snort++ Build 163 Available Now Snort Releases (Aug 03)

Stephen Gantz

Re: Snort in a Home Network Stephen Gantz (Jul 29)

Steven Fitzpatrick

HTML Form URL Encoded Steven Fitzpatrick (Jul 15)

sunila sahu

Re: Snort-devel Digest, Vol 107, Issue 19 sunila sahu (Jul 06)

Teo En Ming

Is Snort 2.9.8.0 Beta Windows Binary Compatible with Windows 10 Home x64? Teo En Ming (Sep 28)

Terry John

Latest snort ignoring pid-path Terry John (Aug 12)

Thierry Tran

Re: snorby => cannot load such file -- dm/devise Thierry Tran (Jul 28)

Tomas Hajek

Re: RPM Build Failure for Snort 2.9.7.3-1 from source RPM (Tomas Hajek) Tomas Hajek (Jul 27)

Turnbough, Bradley E.

Re: Daemonlogger -- Response to Marty Roesch Turnbough, Bradley E. (Jul 28)
Daemonlogger -- Response to Marty Roesch Turnbough, Bradley E. (Jul 24)
Re: Daemonlogger -- Response to Marty Roesch Turnbough, Bradley E. (Jul 24)
Snort Network Admin Training / Certification Turnbough, Bradley E. (Jul 22)
Re: Daemonlogger -- Response to Marty Roesch Turnbough, Bradley E. (Jul 27)
Re: Snort Network Admin Training / Certification Turnbough, Bradley E. (Jul 22)
Re: Daemonlogger -- Response to Marty Roesch Turnbough, Bradley E. (Jul 24)
Re: Snort Network Admin Training / Certification Turnbough, Bradley E. (Jul 22)
Re: Daemonlogger -- Response to Marty Roesch Turnbough, Bradley E. (Jul 24)
daemonlogger buggy? Turnbough, Bradley E. (Jul 22)
Re: Daemonlogger -- Response to Marty Roesch Turnbough, Bradley E. (Jul 24)
Re: Snort Network Admin Training / Certification Turnbough, Bradley E. (Jul 23)
Re: Snort Network Admin Training / Certification Turnbough, Bradley E. (Jul 22)

Txalin

Re: Pulledpork using our repository Txalin (Sep 09)
Payload not fitting rule content detection on snort + snorby Txalin (Sep 07)

usa ims

New to snort (inline mode not rejecting) usa ims (Jul 28)
Re: New to snort (inline mode not rejecting) usa ims (Jul 30)
Understanding the alert file usa ims (Aug 11)
Re: Understanding the alert file usa ims (Aug 12)

Valerius Travasso

problems with snort rules Valerius Travasso (Sep 02)
Re: problems with snort rules Valerius Travasso (Sep 08)

Victoria Lee

Getting snort to block something Victoria Lee (Jul 29)

Victor Roemer

Re: encrypted traffic Victor Roemer (Aug 10)
Re: Suggestion on ./configure for libpcap version Victor Roemer (Jul 31)

Vuong D. Chieu

Vulnerability DNS BIND9 attack DoS Vuong D. Chieu (Aug 05)
Re: Vulnerability DNS BIND9 attack DoS Vuong D. Chieu (Aug 05)

waldo kitty

Re: question about using SNORT to look at multiple NICs on one system waldo kitty (Aug 11)
Re: http_methods error starting snort on solaris 9 waldo kitty (Aug 10)
Re: default sfportscan preprocessor log file name? waldo kitty (Jul 14)
Re: question about using SNORT to look at multiple NICs on one system waldo kitty (Aug 12)
Re: Does multiple configs works with snort 2.9.7.5? waldo kitty (Aug 31)
Re: port 443 in HTTP port variable list waldo kitty (Jul 10)
Re: Payload not fitting rule content detection on snort + snorby waldo kitty (Sep 08)
snort restart after log file rotation?? waldo kitty (Jul 11)
default sfportscan preprocessor log file name? waldo kitty (Jul 11)
Re: SNORT GENERATING SNORT.LOG INSTEAD SNORT.U2 files waldo kitty (Jul 10)
Re: Missing /usr/lib/x86_64-linux-gnu waldo kitty (Jul 26)
Re: Problem with http_header content modifier waldo kitty (Jul 10)
Re: snort.conf - Problem with RULE_PATH & inclide waldo kitty (Jul 25)
Re: Hi guys waldo kitty (Sep 03)
Re: problems with snort rules waldo kitty (Sep 03)
Re: Snort PF_Ring Installation waldo kitty (Jul 10)
Re: test string not alerting waldo kitty (Aug 27)
Re: Problem with http_header content modifier waldo kitty (Jul 10)
Re: Detecting w3af scans waldo kitty (Sep 30)
Re: SNORT GENERATING SNORT.LOG INSTEAD SNORT.U2 files waldo kitty (Jul 10)
Re: Snort PF_Ring Installation waldo kitty (Jul 10)
Re: Users are not able to login with Wordpress Login Bruteforcing rule waldo kitty (Aug 07)
Re: Snort PF_Ring Installation waldo kitty (Jul 10)

Wil Mail

Re: Snort Network Admin Training / Certification Wil Mail (Jul 22)

Xander

Snort in a Home Network Xander (Jul 29)
Re: barnyard2: WARNING: Can't extract timestamp extension from 'merged.log'using base '' Xander (Jul 30)
Re: Fwd: ./configure correct with-mysql-libraries for Rasberry PI 3.18.11-v7+ Xander (Jul 29)
Re: Snort in a Home Network Xander (Jul 29)

xinland66

Re: Pulledpork missing VRT rules xinland66 (Sep 12)
Re: Snort-users Digest, Vol 112, Issue 11 xinland66 (Sep 12)
Flowbit IDs exceeds maximum xinland66 (Jul 31)
Fwd: pulledpork does not generate so rules xinland66 (Sep 10)
Pulledpork using our repository xinland66 (Sep 08)
Pulledpork missing VRT rules xinland66 (Sep 11)

Y M

Re: Myricom cards and multiple instances of Snort - how-to? Y M (Sep 05)
Re: [Snort-devel] Analyze controller area network traffic Y M (Jul 15)
Re: PCRE /PR modifiers Y M (Jul 07)
Re: Snort PF_Ring Installation Y M (Jul 10)
TCP header reserved bits Y M (Jul 28)
Re: Snort PF_Ring Installation Y M (Jul 10)
Re: Snort PF_Ring Installation Y M (Jul 10)
Re: Nessus activity detection quest Y M (Jul 23)
Re: Snort PF_Ring Installation Y M (Jul 10)
Re: Snort Network Admin Training / Certification Y M (Jul 22)
Re: default sfportscan preprocessor log file name? Y M (Jul 15)
Re: test string not alerting Y M (Aug 27)
Re: TCP header reserved bits Y M (Jul 28)
Re: Nessus activity detection quest Y M (Jul 23)
Re: default sfportscan preprocessor log file name? Y M (Jul 13)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Y M (Jul 02)
Re: TCP header reserved bits Y M (Jul 28)
Re: Snort Network Admin Training / Certification Y M (Jul 22)
Re: Snort Network Admin Training / Certification Y M (Jul 22)
Re: FW: Snort PF_Ring Installation Y M (Jul 23)
Re: PCRE /PR modifiers Y M (Jul 07)
Re: appid in Snort failure Y M (Aug 31)
PCRE /PR modifiers Y M (Jul 07)
Re: Barnyard 2 Error Y M (Jul 02)
Re: Snort Network Admin Training / Certification Y M (Jul 23)
Re: Snort PF_Ring Installation Y M (Jul 10)

Олег

★ Snort Devel, Олег оставил для вас сообщение Олег (Sep 09)