[Snort-users] arpspoof verbose output in 2.0?

Jeff Nathan jeff at ...950...
Wed May 28 18:57:07 EDT 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I sent Chris a patch to add verbose output to arpspoof for your type of 
deployment (instances where unified alerting isn't used).

I will ask him again to commit it.

- -Jeff


- --On Friday, May 23, 2003 13:22 -0400 "Arey, Jeff"
<jeffrey.arey at ...9295...> 
wrote:

>
>
> I was wondering if the current version of snort (2.0) offers a more
> verbose output for arpspoof "hits"?  I have seen 3 or 4 arpsoof alerts to
> my syslog, but I am not currently using any of the database plugins.  I
> saw a patch mentioned in earlier versions concerning this.  I am learning
> so much about our LAN traffic- not just IDS stuff,  butICMP unreachables
> and the like.  A special thanks to all of the snort developers for waking
> me up!
>
>
>
> Jeff Arey
>
> Sr. Network Eng.,
>
> Telos Corporation



- --
http://cerberus.sourcefire.com/~jeff       (gpg key available)
Great spirits have always encountered violent opposition from mediocre
minds.
- - Albert Einstein
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (Darwin)

iD8DBQE+1WjkEqr8+Gkj0/0RArQHAJ4h3m+35gEZLwkfR2N20ds2NUoIrACgpuHm
Vn5pxFGTj836+6+1Phl3syM=
=QwCd
-----END PGP SIGNATURE-----





More information about the Snort-users mailing list