[Snort-users] Simple preprocessor example

aquarian_new at yahoo.com aquarian_new at yahoo.com
Mon Aug 7 16:21:22 EDT 2017

I don't have an example or tutorial to share right now. However, you could grab some sample pcap files from www.wireshark.org or pcapr.net and run Snort with the pcap, select appropriate rules from preprocessor.rules file just to play around and observe particular alerts.

  On Fri, Aug 4, 2017 at 1:38 AM, neerav arora via Snort-users<snort-users at lists.snort.org> wrote:   Hello everyone ,
Iam new to snort . Can any one provide me a simple  example (with steps) of snort preprocessor functionality , that i cant try out in my system . I want to use  preprocessor.rules file .
Snort-users mailing list
Snort-users at lists.snort.org
Go to this URL to change user options or unsubscribe:

Please visit http://blog.snort.org to stay current on all the latest Snort news!
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20170807/0e5b8a07/attachment.html>
-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: Untitled
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20170807/0e5b8a07/attachment.ksh>

More information about the Snort-users mailing list