[Snort-users] Compaq Insight alert
tgue at ...106...
Thu Aug 3 05:21:08 EDT 2000
I get this alert quite often:
[**] IDS244 - CVE-1999-0771 - Compaq-insight-dot-dot [**]
08/03-10:56:52.660000 0:C0:95:E0:FC:82 -> 0:50:2A:B5:AC:0 type:0x800 len:0x236
220.127.116.11:80 -> x.x.2.207:2301 TCP TTL:64 TOS:0x0 ID:11435
******A* Seq: 0x4AB74601 Ack: 0xD993B6 Win: 0x4000
It's just innocent Web-traffic between a website and one of our workstations, as far as I can tell. I'm thinking of commenting out this alert, because it gets triggered so often...Any other ideas?
More information about the Snort-users