Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email email@example.com
From: Nicky Davey (daveyn2002yahoo.com.au)
Date: Thu Feb 21 2002 - 12:16:59 CST
Thanks, i did have my home net set to any.
So why would it think port 80 traffic is a port scan?
--- Paul Keser <pkesermail.arc.nasa.gov> wrote: >
-----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> I saw a lot of these types of alerts until I defined
> my HOME_NET variable.
> - -PaulK
> On Thursday 21 February 2002 08:48, you wrote:
> > Hi,
> > I have set up snort and my portscan.log file is
> > of spp_portscans from my internal addresses to
> > addresses on port 80. I put this down to normal
> > traffic, is it normal and why does it happen?
> > Thank you.
> > http://movies.yahoo.com.au - Yahoo! Movies
> > - Vote for your nominees in our online Oscars
> > _______________________________________________
> > Snort-users mailing list
> > Snort-userslists.sourceforge.net
> > Go to this URL to change user options or
> > Snort-users list archive:
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.0.6 (GNU/Linux)
> Comment: For info see http://www.gnupg.org
> -----END PGP SIGNATURE-----
http://movies.yahoo.com.au - Yahoo! Movies
- Vote for your nominees in our online Oscars pool.
Snort-users mailing list
Go to this URL to change user options or unsubscribe:
Snort-users list archive: