[Snort-users] Unknown POP3 Command

James Lay jlay at ...13475...
Wed Jun 5 13:46:07 EDT 2013

On 2013-06-05 09:28, Josh Bitto wrote:
> The only problem with doing a pcap is we use pfsense (open source
> firewall) and it has snort built into it. There is a way to do a pcap
> for the offending IP's, but doing it continuously isn't going to
> happen. I'm already having memory issues with the amount of sensors 
> we
> have and each one using high amount of memory.


What do your output plugins show in your snort.conf?


More information about the Snort-users mailing list