[Snort-sigs] False positive in the intrusion prevention

Esbjörn Krantzén e.krantzen at ...2998...
Mon Feb 21 07:04:58 EST 2005


# This is a template for submitting snort signature descriptions to
# the snort.org website
#
# Ensure that your descriptions are your own
# and not the work of others.  References in the rules themselves
# should be used for linking to other's work. 
#
# If you are unsure of some part of a rule, use that as a commentary
# and someone else perhaps will be able to fix it.
# 
# $Id$
#
# 

Rule:  

--
Sid:2329

--
Summary:

--
Impact:

--
Detailed Information:When playing the game Enemy Territory snort in
Clarkconnect closes down the ip (24 hours) to the server I am playing at.

--
Affected Systems:Windows XP

--
Attack Scenarios:

--
Ease of Attack:

--
False Positives:The game Enemy Territory seems to generate a False positive

--
False Negatives:

--
Corrective Action:

--
Contributors:

-- 
Additional References:
I dont know if this will help you much but still it happens.
Regards 
Esse Krantzen
e.krantzen at ...2998...
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-sigs/attachments/20050221/71d2884e/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: IMSTP.gif
Type: image/gif
Size: 8841 bytes
Desc: not available
URL: <https://lists.snort.org/pipermail/snort-sigs/attachments/20050221/71d2884e/attachment.gif>


More information about the Snort-sigs mailing list