|
|
|
|
Snort Forums Archive
Archive Home » Third Party Tools » snortsam and sid-block.map
Please note that the categories listed below represent an archived version of our forums pages. To view the current version and be able to post and reply to threads, please register and login here to go to the full forums pages.
[ Notice: Full Version of This Topic ]
snortsam and sid-block.map
Posted by gat_nyu on June 08, 2005 07:30:35
I have snort compiled with snortsam patches working just fine. According to snortsam documentation it's possible to define which alerts one would like snort to notice snortsam in a single file (sid-block.map) instead of having to modify each rule in each rules' files.
My question would be if someone has written an example file to take as basis with the most common and dangerous alerts, or if I have to start from scratch.
thanks in advance |
|
|
|
|
|