[Snort-users] Rules not Triggering after Snort v2.4.1

Ron Jenkins rjenkins at ...12829...
Wed Sep 21 13:00:32 EDT 2005

The below rule appears to have stopped working after upgrading to


alert udp $EXTERNAL_NET !500 -> $HOME_NET 500 (msg:"Client VPN Phase 1
Traffic"; classtype: attempted-admin; sid:1234002; rev:1;)


Any ideas?



Ron Jenkins (MCNE, CNE6, MCP, CCNA, CCEA) 
Senior Architect 
Data Integrity, LLC 
"We Integrate People with Solutions" 
1724 Dallas Drive 
Suite 11 
Baton Rouge, La 70806 
Office. 225.927.8030 
Fax. 225.927.8033 
Email. rjenkins at ...12829... 
Web. www.dibr.net 


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20050921/107630dc/attachment.html>

More information about the Snort-users mailing list