Snort mailing list archives

Re: Port scanning


From: Erek Adams <erek () theadamsfamily net>
Date: Mon, 17 Sep 2001 12:16:55 -0700 (PDT)

On Mon, 17 Sep 2001, Subba Rao wrote:

[...snip...]

Now, I dial to the Internet using another system and run a portscan on the
Snort box. All I am seeing is some ICMP "Echo Reply" logged into the "alerts"
file. There is nothing logged into "portscan.log" while the ipchains is logging
each port connect attempt into syslog.

[...snip...]

Actually, a little research gives this answer:

http://snort.sourcefire.com/docs/faq.html#4.3

:)  Guess I was right!

-----
Erek Adams
Nifty-Type-Guy
TheAdamsFamily.Net


_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: