[Snort-sigs] snort rules confuse

Joseph Boo pcinfo at ...3939...
Thu Jul 31 10:08:03 EDT 2014


dear sir,
  l setup the snort to protect my email server and webserver, but some 
of the rules are block my email or web server to login.
  l chechk the blacklist it shows that:-

  1.  (IMAP) Unknown IMAP4 command
  2.  (http_inspect) NO CONTENT-LENGTH OR TRANSFER-ENCODING IN HTTP RESPONSE

when l see this in my blocked, the ip will be block.

  did anyone here facing the problem same with me.

thank you,

best regards,

joseph





More information about the Snort-sigs mailing list