[Snort-users] All snort users -- Rules?

Chris Green cmg at ...671...
Sat Sep 22 14:11:02 EDT 2001


"Tim" <twr at ...163...> writes:

> I have started to learn snort....but not soon enough....if you would all
> provide me with or point me in the direction where I can find a rule set
> for the nimda virus and its detection/repair/deletion, I would be so
> ever gratefull.

http://www.snort.org/article.html?id=31 points to the specific rules
that will go off in 1.8.1

Snort is a detector and not a repair/deleter :)

http://hogwash.sourceforge.net is the "packet scrubber" but it's a
fairly separate project.
-- 
Chris Green <cmg at ...671...>
"I'm beginning to think that my router may be confused."




More information about the Snort-users mailing list