[Snort-devel] Snort 2.8 Beta Now Available

rmkml rmkml at ...879...
Thu Aug 30 06:02:46 EDT 2007


and why not removed this comment on snort28.conf :
  # Please note:  [80,8080] does not work.
  # If you wish to define multiple HTTP ports, use the following convention
  # when customizing your rule set (as part of Step #6 below).  This should
  # not be done here, as the rules files may depend on the classifications
  # and/or references, which are included below.
  #
  ## var HTTP_PORTS 80
  ## include somefile.rules
  ## var HTTP_PORTS 8080
  ## include somefile.rules
because v2.8beta include new port list option avalaible: (not tested)
  * Port Lists.  Added and improved handling of lists of Ports, Port Ranges,
    and use of Port variables (portvar) within rules.  Eliminates need to
    duplicate rules for different that are far apart, like HTTP ports 80 and
    8080.  See README.variables for details.
Regards
Rmkml
Crusoe Researches


On Thu, 30 Aug 2007, rmkml wrote:

> Date: Thu, 30 Aug 2007 11:49:22 +0200 (CEST)
> From: rmkml <rmkml at ...879...>
> To: snort-team <snort-team at ...402...>
> Cc: snort-devel at lists.sourceforge.net
> Subject: Re: [Snort-devel] Snort 2.8 Beta Now Available
> 
> Hi Snort Team,
> three very little typo on RELEASE.NOTES file :
> -classifications and CVS/Bugtrack/etc refernece information for those
> +classifications and CVE/Bugtraq/etc reference information for those
> Regards
> Rmkml
> Crusoe Researches
>
>
> On Wed, 29 Aug 2007, Snort Releases wrote:
>
>> Date: Wed, 29 Aug 2007 18:52:24 -0400
>> From: Snort Releases <snortreleases at ...835...>
>> Reply-To: snort-team <snort-team at ...402...>
>> To: snort-devel at lists.sourceforge.net
>> Subject: [Snort-devel] Snort 2.8 Beta Now Available
>>
>> Hi everybody,
>>
>> The Snort 2.8 beta is now available on snort.org, in both source and
>> binary form.
>>
>> Feature highlights:
>>
>> * Port lists
>> * IPv6 support
>> * Packet performance monitoring
>> * Experimental support for target-based stream and IP frag reassembly
>> * Ability to take actions on preprocessor events
>> * Detection for TCP session hijacking based on MAC address
>> * Unified2 output plugin
>> * Improved performance and detection capabilities
>>
>> Please submit bugs, questions, and feedback to snort-beta at ...2780...
>>
>> Happy Snorting!
>> The Snort Release TeamS
>>
>> -------------------------------------------------------------------------
>> This SF.net email is sponsored by: Splunk Inc.
>> Still grepping through log files to find problems?  Stop.
>> Now Search log events and configuration files using AJAX and a browser.
>> Download your FREE copy of Splunk now >>  http://get.splunk.com/
>> _______________________________________________
>> Snort-devel mailing list
>> Snort-devel at lists.sourceforge.net
>> https://lists.sourceforge.net/lists/listinfo/snort-devel
>>
>
> -------------------------------------------------------------------------
> This SF.net email is sponsored by: Splunk Inc.
> Still grepping through log files to find problems?  Stop.
> Now Search log events and configuration files using AJAX and a browser.
> Download your FREE copy of Splunk now >>  http://get.splunk.com/
> _______________________________________________
> Snort-devel mailing list
> Snort-devel at lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/snort-devel
>




More information about the Snort-devel mailing list