Pantek Expert IT Services Software Library
Hosting provided by:
CybrHost

Visit our blog, Open Sores: Tips From the Trenches

Enterprise Linux Hosting

Re: [Snort-sigs] Using snort to Identify P2P transfers.

From: james <hackerwacker(at)cybermesa.com>
Date: Tue Sep 30 2003 - 01:34:36 EDT

On Mon, 2003-09-29 at 09:51, Tony Hernandez wrote:  I was wondering if anyone has snort on a router mirror port configured

Yes, I mirror the edge routers Eth port to my Snort box.

 to identify p2p traffic ie - kazaa, gnutella, directconnect.. etc.

Just looking for some info on this, experiences, example sigs etc..

Snort comes with P2P rules, try turning them on.



This sf.net email is sponsored by:ThinkGeek Welcome to geek heaven.
http://thinkgeek.com/sf

Snort-sigs mailing list
Snort-sigs@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/snort-sigs Received on Tue Sep 30 02:05:05 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:08:35 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library