[Snort-users] spp_portscan from DNS servers
michaels at ...155...
Fri Oct 12 07:50:05 EDT 2001
If you can send your Snort.conf file, I will have a look to see if I can
Commercial Snort Support
Silicon Defense - www.silicondefense.com
Michael Steele - Snort Support Technician
From: snort-users-admin at lists.sourceforge.net
[mailto:snort-users-admin at lists.sourceforge.net] On Behalf Of Mike
Sent: Thursday, October 11, 2001 8:52 AM
To: snort-users at lists.sourceforge.net
Subject: [Snort-users] spp_portscan from DNS servers
I have installed and configured Snort and ACID. I followed the
Doc on configuring my DNS servers in the snort.conf. I have added the
DNS servers with a /32 as suggested in the SNORT FAQ. I am still
receiving a lot of spp_portscan from my two DNS servers. Any thoughts?
What am I missing?
3z.net a PCD Company,
PCD Network Solutions, Inc,
"When Success the Only Solution t h i n K 3z.net"
Snort-users mailing list
Snort-users at lists.sourceforge.net
Go to this URL to change user options or unsubscribe:
Snort-users list archive:
More information about the Snort-users