Snort mailing list archives

difficulties in ALERT generation...


From: santosh reddy <mycoolsant () yahoo co in>
Date: Mon, 6 Oct 2003 16:41:58 +0100 (BST)

Hello all...
i am new to snort...
in three weeks..i was able to install snort
successfully and i tested snort using some basic rules
for which i got alerts in the ACID page...
now...i set the rule files in the snort.conf file (i
commented out the rule files) but i am not getting any
real alerts....
i am able to log the packets into a file but until and
unless we have the alerts (i.e alert packets) we cant
differenciate between the bad data and good data...so
how can i generate alerts using the existing rule
sets...
do we have to work on the internet for a long
time(like opening websites or pornsites) when snort is
running.
suggest me some method to generate data with the
abnormalities...
do we hav to attack our own network...and if yes how
do we do that?
the final thing is ...i want to generate real time
alerts and i want to log data and analyze that data...
please mail me as soon as possible...
thanking you
regards
Santosh Bethi

________________________________________________________________________
Yahoo! India Matrimony: Find your partner online.
Go to http://yahoo.shaadi.com


-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: