Snort mailing list archives
snort filter
From: "Eduard Meiler" <edik () meiler org>
Date: Wed, 26 Sep 2001 22:15:36 +0200
Hallo,
after installing snort I get a lot of these messages about the traffic: Make
it sense to disable this function, or is there a way to filter the
unnecessary information ??
Security Violations
=-=-=-=-=-=-=-=-=-=
Sep 26 21:00:00 wall snort: [1:515:2] MISC source port 53 to <1024
[Classification: Potentially Bad Traffic] [Priority: 2]: {UDP}
193.141.40.1:53 -> 192.168.7.200:53
regards
eduard
Current thread:
- snort filter Eduard Meiler (Sep 26)
- Re: snort filter Erek Adams (Sep 26)
- AW: snort filter Eduard Meiler (Sep 26)
- Re: AW: snort filter Erek Adams (Sep 26)
- AW: AW: snort filter Eduard Meiler (Sep 26)
- Re: AW: AW: snort filter Erek Adams (Sep 26)
- AW: snort filter Eduard Meiler (Sep 26)
- Re: snort filter Erek Adams (Sep 26)
