[Snort-users] Write rules Snort

Iliass Hakim iliass61 at ...125...
Mon Jul 21 08:57:56 EDT 2014


Hi all,
I am a new snort user. Current implementation is snort-2.9.2 on Ubuntu 12.04 TLS.
My question is what can be write
rules to determine if saturation has occurred on the network and its cause i.e.
the number 
of packets sent, received and lost 
If yes How?
best  


Regards,
Thanks  		 	   		  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20140721/6f3133f3/attachment.html>


More information about the Snort-users mailing list