[Snort-users] rule definition

Joel Esler jesler at ...1935...
Mon Sep 2 09:21:09 EDT 2013


Dear Abid,

Thanks for your email.  I believe you will find what you are looking
for here: http://manual.snort.org


On Mon, Sep 2, 2013 at 9:18 AM, Abid Ayoub <abid.ayoub at ...11827...> wrote:
> Hello,
>
> I want to define a spcial ping like attack. For example, when the data send
> in the ping is defined bigger than the normal ping , or when the number of
> ping is 1000 ping /min.
> So is that possible with snort ?
> how can i do that ?
>
> Regards
> Abid
>
> ------------------------------------------------------------------------------
> Learn the latest--Visual Studio 2012, SharePoint 2013, SQL 2012, more!
> Discover the easy way to master current and previous Microsoft technologies
> and advance your career. Get an incredible 1,500+ hours of step-by-step
> tutorial videos with LearnDevNow. Subscribe today and save!
> http://pubads.g.doubleclick.net/gampad/clk?id=58040911&iu=/4140/ostg.clktrk
> _______________________________________________
> Snort-users mailing list
> Snort-users at lists.sourceforge.net
> Go to this URL to change user options or unsubscribe:
> https://lists.sourceforge.net/lists/listinfo/snort-users
> Snort-users list archive:
> http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users
>
> Please visit http://blog.snort.org to stay current on all the latest Snort
> news!



-- 
Joel Esler
Senior Research Engineer, VRT
OpenSource Community Manager
Sourcefire




More information about the Snort-users mailing list