[Snort-users] Firing off Abuse email based on Snort Traffic

Matt Howell mhowell at ...9084...
Thu May 29 10:45:12 EDT 2003


We are starting to really see the benefit of our Snort deployment
project, and inevitably the project's scope has been expanded.  We would
like to set up a Sensor to automatically send Abuse emails to the ISP of
any hosts that break our Portscan threshold.   Has anyone seen a project
/ product out there that does this already?

Any input would be appreciated...



More information about the Snort-users mailing list