[Snort-users] Too many events in logs

spyguy703 at ...741... spyguy703 at ...741...
Thu May 23 11:07:13 EDT 2002


Sorry for asking a dumb question. But I need to log port 80/tcp traffic to a certain server. (not web traffic)

I have already created a simple rule. My problem is that there are too many alerts. 

Is there a way in snort to limit how many rule matches get logged?




More information about the Snort-users mailing list