[Snort-users] Bug in snort-lib docs regarding portscan

Martin Roesch roesch at ...1...
Sun Jul 23 23:33:42 EDT 2000


Good catch, I'll change that as well.

Damn, where were you four days ago when I was shoving betas out the door
getting ready to release this?  :)

    -Marty

Christian Hammers wrote:
> 
> Hello list
> 
> seen in snort-lib:
>         # going to seven different ports in less than two seconds.
>         # "Stealth" TCP packets are always detected, regardless
>         # of these settings.
>         reprocessor portscan: $HOME_NET 4 3 /var/log/portscan.log
> 
> It should probably read 4 ports in 3 seconds.
> 
> bye,
> 
>  -christian-
> 
> --
>              Real Users never know what they want,
>    but they always know when your program doesn't deliver it.
> ---------------------------------------------------------------------------
> Linux - the choice of the GNU generation.           Join the Debian Project
>                                                       http://www.debian.org
> Christian Hammers * Oberer Heidweg 35 * D-52477 Alsdorf * Tel.: 02404-25624
> 0AA3 E879 1D82 F59E 77A4 0096 911F 4AE6 86A1 18E6 1024D/86A118E6 1999-09-17
> 
> _______________________________________________
> Snort-users mailing list
> Snort-users at lists.sourceforge.net
> http://lists.sourceforge.net/mailman/listinfo/snort-users

-- 
Martin Roesch                      <roesch at ...2...>
Core R&D                         http://www.hiverworld.com
Hiverworld, Inc.       Continuous Adaptive Risk Management




More information about the Snort-users mailing list