|
|||||||||||||||||||
|
Re: [Snort-sigs] Using snort to Identify P2P transfers.
From: james <hackerwacker(at)cybermesa.com>
Date: Tue Sep 30 2003 - 01:34:36 EDT On Mon, 2003-09-29 at 09:51, Tony Hernandez wrote: I was wondering if anyone has snort on a router mirror port configured Yes, I mirror the edge routers Eth port to my Snort box. to identify p2p traffic ie - kazaa, gnutella, directconnect.. etc. Just looking for some info on this, experiences, example sigs etc.. Snort comes with P2P rules, try turning them on. This sf.net email is sponsored by:ThinkGeek Welcome to geek heaven. http://thinkgeek.com/sf Snort-sigs mailing list Snort-sigs@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/snort-sigs Received on Tue Sep 30 02:05:05 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:08:35 EDT |
||||||||||||||||||
|
|||||||||||||||||||