[Snort-sigs] are snort rules snapchot 2.9.9.0 and ET enough for full detection or i will add others source of rules

wkitty42 at windstream.net wkitty42 at windstream.net
Fri Jul 13 12:07:24 EDT 2018


On 07/11/2018 06:21 AM, ossama bouziani via Snort-sigs wrote:
> My question :shall i add others rules to snort rules snapchot 2.9.9.0 and
> ET?

you can easily add your own rules files... a lot of systems use local.rules for 
their locally maintained rules... that could be expanded on with something like

   local-web.rules
   local-ransomware.rules

and more if they are needed... just make sure they are included in your 
management tool so they are actually included in what snort uses...


-- 
  NOTE: No off-list assistance is given without prior approval.
        *Please keep mailing list traffic on the list unless*
        *a signed and pre-paid contract is in effect with us.*


More information about the Snort-sigs mailing list