Snort mailing list archives
normal vs. malicious icmp echo
From: "Mario Guerendo" <m.guerendo () comcast net>
Date: Wed, 5 May 2004 22:25:42 -0500
Hi everyone, I just wanted to know if anybody had a snort rule available that would differentiate a normal ICMP echo ping from a malicious one? If so, would you be willing to share it? Thx a lot!! M. ------------------------------------------------------- This SF.Net email is sponsored by Sleepycat Software Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to deliver higher performing products faster, at low TCO. http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3 _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- normal vs. malicious icmp echo Mario Guerendo (May 05)
- Re: normal vs. malicious icmp echo Erik Fichtner (May 05)
- Re: normal vs. malicious icmp echo Matt Kettler (May 06)
- Re: normal vs. malicious icmp echo Milo Velimirovic (May 06)