Home page logo

snort logo Snort mailing list archives

Re: Snort distributions
From: Eoin Miller <eoin.miller () trojanedbinaries com>
Date: Wed, 17 Apr 2013 17:20:20 +0000

On 3/6/2013 15:05, Joel Esler wrote:
On Mar 6, 2013, at 9:33 AM, Jon M <megajune () gmail com
<mailto:megajune () gmail com>> wrote:

acceptable packet loss of less
than 5% on average.

Hate to say this, cause it seems like I'm being an ass… but..  there is
no just thing as "acceptable packet loss"

It can be acceptable. Sniffers running for research purposes or if the
cost is too great to achieve redundant monitoring of 40G networks. It
isn't even like if you have 100% monitoring that the existing signature
sets find all the evil going on anyways. :)

-- Eoin

Precog is a next-generation analytics platform capable of advanced
analytics on semi-structured data. The platform includes APIs for building
apps and a phenomenal toolset for data science. Developers can use
our toolset for easy data analysis & visualization. Get a free account!
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
Snort-users list archive:

Please visit http://blog.snort.org to stay current on all the latest Snort news!

  By Date           By Thread  

Current thread:
  • Re: Snort distributions Randal T. Rioux (Apr 16)
    • <Possible follow-ups>
    • Re: Snort distributions Eoin Miller (Apr 17)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]