[Snort-users] Wireless: Rules & Classification

jon baer security at ...9153...
Tue Nov 18 08:37:01 EST 2003


I don't think HenWen will work unless it is able to decode the 802.11
datalink type.  I could be wrong, but you need to first put the card in
monitor mode + test to see those packets are going through snort for
analysis.

See: http://www.snort-wireless.org for more info.

- Jon

----- Original Message -----
From: "Christopher Lewis" <rhinokid at ...3027...>
To: <snort-users at lists.sourceforge.net>
Sent: Monday, November 17, 2003 9:59 AM
Subject: [Snort-users] Wireless: Rules & Classification


> Hello,
>
> I am wondering if there are any wireless rules and classification of
> alerts? I am running HenWen on a PowerBook G4 - OS X 10.3.1 w/ AirPort
> Extreme. Everything works GREAT. My only question is, is there any
> rules dealing with wireless attacks. I have been looking at the rules
> but there are a "lot" of them and do not see them yet. Any help or
> direction would be appreciated.
>
> thnx
>
>
>
> -------------------------------------------------------
> This SF. Net email is sponsored by: GoToMyPC
> GoToMyPC is the fast, easy and secure way to access your computer from
> any Web browser or wireless device. Click here to Try it Free!
> https://www.gotomypc.com/tr/OSDN/AW/Q4_2003/t/g22lp?Target=mm/g22lp.tmpl
> _______________________________________________
> Snort-users mailing list
> Snort-users at lists.sourceforge.net
> Go to this URL to change user options or unsubscribe:
> https://lists.sourceforge.net/lists/listinfo/snort-users
> Snort-users list archive:
> http://www.geocrawler.com/redir-sf.php3?list=snort-users
>





More information about the Snort-users mailing list