[Snort-openappid] OpenAppID custom detector

Y M snort at outlook.com
Mon Apr 23 14:39:20 EDT 2018


You can use the “appid_detector_builder.sh” tool that comes with Snort’s tarball in the bin directory.

YM
________________________________
From: Snort-openappid <snort-openappid-bounces at lists.snort.org> on behalf of Deivison Xavier via Snort-openappid <snort-openappid at lists.snort.org>
Sent: Monday, April 23, 2018 9:36:04 PM
To: snort-openappid at lists.snort.org
Subject: [Snort-openappid] OpenAppID custom detector

Hello,

I am doing a college work on OpenAppID (Snort 2.9.9.11/Ubuntu16<http://2.9.9.11/Ubuntu16>). I'm having trouble creating a detector for a third-party application. I read OpenDetectorDeveloperGuide3.0n (https://www.snort.org/downloads/openappid/6328), but it was not clear how to customize a detector. Someone with knowledge about the subject?

--
Att,

Deivison Xavier
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-openappid/attachments/20180423/9c08d2ba/attachment.html>


More information about the Snort-openappid mailing list