[Snort-users] [RGSPAM] Re: network bandwidth downs when snort inoine is up

carlopmart carlopmart at ...11827...
Thu Oct 11 02:59:44 EDT 2007


Joel Esler wrote:
> These two rulesets are entirely comprised of "ip" rules.  Which are the 
> slowest kind.  If you are going to use Snort to do this type of 
> activity, I suggest you take the IP's in those rules and use them in 
> your iptables firewall, maybe Bleeding-threats can develop some type of 
> firewall rules.
> 
> Try shutting these two rulesets off and try again.
> 
> 
> -- 
> joel esler
> http://demo.sourcefire.com/jesler.pgp.key
> 
> 
> 
> On Oct 10, 2007, at 12:38 PM, carlopmart wrote:
> 
>> bleeding-compromised.rules
>> bleeding-dshield.rules
> 
> 

Hi Joel,

  Restult is the same without using bleeding rules .... Bandwidth is 166Kpbs ....

-- 
CL Martinez
carlopmart {at} gmail {d0t} com




More information about the Snort-users mailing list