Re: Please help me to get Snort rules for Automotive
Snort User via Snort-sigs <[email protected]>
| Newsgroups | gmane.comp.security.ids.snort.sigs |
|---|---|
| Message-ID | <CAJ5786-9jHt_VxaYg2tYqM2y4JHn+KuUzfCG+j51fxnQZOze1Q@mail.gmail.com> |
Of course. I was referring only to the available capability - as one gets if they download it now and run it as-is. One can add features and code for additional capability. On Tue, Nov 1, 2022 at 9:34 AM Joel Esler <[email protected]> wrote: > > > > On Oct 31, 2022, at 09:28, Snort User via Snort-sigs < > [email protected]> wrote: > > > > > > > <snip> > > > > ** Snort does not have any capability to analyze custom application > level protocols. Snort can very well do analysis of well known application > level protocols (HTTP, SMTP, and all such..). > > <snip> > > > Sure it can. It would just need to be told how to analyze them. Which > would mean a specific preprocessor for those protocols. _______________________________________________ Snort-sigs mailing list [email protected] https://lists.snort.org/mailman/listinfo/snort-sigs Please visit http://blog.snort.org for the latest news about Snort! Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads">emerging threats</a>!