[Snort-users] Truncated Tcp Options?

Sh J shay_work at ...131...
Sat May 24 13:15:02 EDT 2003


Hello u all,
 
I got this line in my alert file does anyone know what that mean:
[**] (snort_decoder): Truncated Tcp Options [**]
05/23-19:20:55.076031 19.90.161.13:0 -> 18.18.1.1:0
TCP TTL:116 TOS:0x0 ID:45780 IpLen:20 DgmLen:48 DF
***A**S* Seq: 0xC0A39FDE  Ack: 0xEF6BF568  Win: 0x5B4  TcpLen:28
 
Thanks!
 
John


---------------------------------
Do you Yahoo!?
The New Yahoo! Search - Faster. Easier. Bingo.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20030524/23506c70/attachment.html>


More information about the Snort-users mailing list