Re: Sfportscan rules
"Joel Esler \(jesler\) via Snort-sigs" <[email protected]>
| Newsgroups | gmane.comp.security.ids.snort.sigs |
|---|---|
| Message-ID | <[email protected]> |
There are no rules associated with sfportscan. The detection logic for sfportscan is hardcoded. You may, however, change the settings for it. http://manual-snort-org.s3-website-us-east-1.amazonaws.com/node17.html#SECTION00324000000000000000 > On Jul 9, 2021, at 9:20 AM, Golla, Vijay [USA] via Snort-sigs <[email protected]> wrote: > > Hi all, > > I have been experimenting with the sfportscan module and have been looking for the specific rules implemented within this module. I would like to eventually edit and modify the rules used within the sfportscan module as I further experiment. I have searched the internet for the rules used as snort is open source but can not seem to locate the documentation. Any clarification or guidance would be much appreciated! > > Thank you! > _______________________________________________ > Snort-sigs mailing list > [email protected] <mailto:[email protected]> > https://lists.snort.org/mailman/listinfo/snort-sigs <https://lists.snort.org/mailman/listinfo/snort-sigs> > > Please visit http://blog.snort.org <http://blog.snort.org/> for the latest news about Snort! > > Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette <https://snort.org/faq/what-is-the-mailing-list-etiquette> > > Visit the Snort.org <http://snort.org/> to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads <https://snort.org/downloads/#rule-downloads>">emerging threats</a>! _______________________________________________ Snort-sigs mailing list [email protected] https://lists.snort.org/mailman/listinfo/snort-sigs Please visit http://blog.snort.org for the latest news about Snort! Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads">emerging threats</a>!
smime.p7s
(application/pkcs7-signature, 2.9 KB) - not displayed