[Snort-sigs] snort not detect messenger spam ? (snort240b18+snortrules24)

Jason security at ...704...
Tue Aug 16 07:51:34 EDT 2005


it is easy enough to create a rule to detect this. The proper approach 
though would be to block inbound access to these ports from the internet 
and solve the issue completely.


rmkml wrote:
> Hi,
> 
> look this url :
> http://www.broadbandreports.com/forum/remark,13970880~start=-2~mode=flat
> 
> snort don't have rule for detect this udp packet ? (dst port 1026-1027)
> 
> Regards
> Rmkml
> 
> 
> -------------------------------------------------------
> SF.Net email is Sponsored by the Better Software Conference & EXPO
> September 19-22, 2005 * San Francisco, CA * Development Lifecycle Practices
> Agile & Plan-Driven Development * Managing Projects & Teams * Testing & QA
> Security * Process Improvement & Measurement * http://www.sqe.com/bsce5sf
> _______________________________________________
> Snort-sigs mailing list
> Snort-sigs at lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/snort-sigs
> 




More information about the Snort-sigs mailing list