Snort mailing list archives
difficulties in ALERT generation...
From: santosh reddy <mycoolsant () yahoo co in>
Date: Mon, 6 Oct 2003 16:41:58 +0100 (BST)
Hello all... i am new to snort... in three weeks..i was able to install snort successfully and i tested snort using some basic rules for which i got alerts in the ACID page... now...i set the rule files in the snort.conf file (i commented out the rule files) but i am not getting any real alerts.... i am able to log the packets into a file but until and unless we have the alerts (i.e alert packets) we cant differenciate between the bad data and good data...so how can i generate alerts using the existing rule sets... do we have to work on the internet for a long time(like opening websites or pornsites) when snort is running. suggest me some method to generate data with the abnormalities... do we hav to attack our own network...and if yes how do we do that? the final thing is ...i want to generate real time alerts and i want to log data and analyze that data... please mail me as soon as possible... thanking you regards Santosh Bethi ________________________________________________________________________ Yahoo! India Matrimony: Find your partner online. Go to http://yahoo.shaadi.com ------------------------------------------------------- This sf.net email is sponsored by:ThinkGeek Welcome to geek heaven. http://thinkgeek.com/sf _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- difficulties in ALERT generation... santosh reddy (Oct 06)
