[Snort-users] Catching duplicate packets.

Patrick Audley lists.security.snort at ...14...
Tue Jul 18 12:57:51 EDT 2000

       Is it possible to write a rule or a plugin to catch tcp and/or
udp packets with duplicate soure/dest/sequence information?  Our
network has had storms of these lately and I'd like to be able to
catch them in action.

"Most people would sooner die than think; in fact, they do so. " 
- Bertrand Russell (1872-1970) 

More information about the Snort-users mailing list