OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Dan Fiorito (danfclearnetwork.com)
Date: Wed Jun 06 2001 - 13:39:20 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    A default conf file is included with the distro as well as rules. The new
    rules and an updated configuration file can be found at www.snort.org in the
    downloads section halfway down.

    -----Original Message-----
    From: Mark Andrich [mailto:MAndrichPreventBlindness.org]
    Sent: Wednesday, June 06, 2001 12:44 PM
    To: 'snort-userslists.sourceforge.net'
    Subject: [Snort-users] Newbie Question... Please forgive......

    Hi,

    I'm in the process of familiarizing myself with Snort. I'm using the windows
    version while in the process of setting up a Linux box. It seems that all of
    the available rulesets are in a unix/linux format and I have not been able
    to find configuration files or rulesets for the Win32 version. I've checked
    Snort.org, Whitehat.org, Google, and the archives for this list. I've
    interpreted what I've read about rulesets to mean that there are
    preconfigured rules that only require minor changes (IP addresses and such)
    that would cover a much broader range of attacks than the total beginner
    (Me) could feasibly sit down and write.

    the question:

    Where can I find rulesets and config files for the Win32 version? Have I
    overlooked something blatantly obvious?

    Many thanks,

    Mark Andrich

    _______________________________________________
    Snort-users mailing list
    Snort-userslists.sourceforge.net
    Go to this URL to change user options or unsubscribe:
    http://lists.sourceforge.net/lists/listinfo/snort-users
    Snort-users list archive:
    http://www.geocrawler.com/redir-sf.php3?list=snort-users

    _______________________________________________
    Snort-users mailing list
    Snort-userslists.sourceforge.net
    Go to this URL to change user options or unsubscribe:
    http://lists.sourceforge.net/lists/listinfo/snort-users
    Snort-users list archive:
    http://www.geocrawler.com/redir-sf.php3?list=snort-users