Snort mailing list archives
Ignore portscan from dynamic IP
From: "Dan McIntosh" <d.mcintosh () computer org>
Date: Sat, 16 Mar 2002 17:53:08 -0500
I log a lot of UDP and TCP scans with the source IP of my dynamic IP address and the destination IP of my ISP's DNS servers. I believe may caused by not specifying a home network on the command line (I monitor the DSL-router <-> DSL modem 'PPPoE' link). Is there a way to ignore scans that appear to originate from my dynamic IP address? ..Thanks, Dan _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- snort stateful inspection testing Andrea Barisani (Mar 16)
- Ignore portscan from dynamic IP Dan McIntosh (Mar 16)
- Message not available
- Re: [Snort-devel] snort stateful inspection testing Andrea Barisani (Mar 17)
- Re: [Snort-devel] snort stateful inspection testing Michael Scheidell (Mar 21)
- Re: [Snort-devel] snort stateful inspection testing Andrea Barisani (Mar 17)