[Snort-users] Snort rule to monitor for a specific user login

Jesse Lands cryptograffiti at ...11827...
Thu Aug 13 10:54:13 EDT 2009

Is it possible to create a snort trigger for any time a specific username is
used to attempt a login over the network?  I've never created a snort rule
before so if it's in the FAQ I apologize.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20090813/315c4e11/attachment.html>

More information about the Snort-users mailing list