[Snort-users] Ignore portscan from dynamic IP

Dan McIntosh d.mcintosh at ...3338...
Sat Mar 16 14:54:03 EST 2002


I log a lot of UDP and TCP scans with the source IP of my dynamic IP
address and the destination IP of my ISP's DNS servers.  I believe may
caused by not specifying a home network on the command line (I monitor
the DSL-router <-> DSL modem 'PPPoE' link).

Is there a way to ignore scans that appear to originate from my dynamic
IP address?


 ..Thanks, Dan





More information about the Snort-users mailing list