[Snort-users] problem about alert

Qinglan Li li1q at ...4105...
Fri Nov 16 08:49:03 EST 2001


Hi all,


I'm new to snort; now I met a really simple proble. I tried to test
snort by using different attacks; Actually I use Nessus to simulate the
attacks. Whenever I run snort, the alert is always like this:
[**] [1:499:1] MISC Large ICMP Packet [**]
[Classification: Potentially Bad Traffic] [Priority: 2]
......
[Xref => http://www.whitehats.com/info/IDS246]

Could you please give me any suggestion to figure out this problem?

Thanx a lot,

Laura





More information about the Snort-users mailing list