Re: Intrusion Detection Evaluation Datasets

Stefano Zanero <[email protected]>
Newsgroups gmane.comp.security.ids
Organization Secure Network S.r.l.
Message-ID <[email protected]>
Ravi Chunduru wrote:

> perspective to change parameters in existing .so rules. There should
> be some solution like web application firewalls do - deep packet
> inspection and protocol parsing.

Please, don't bash snort for the point of bashing it. "Deep packet
inspection" and "protocol parsing" are things that snort and its plugins
already do. Point out specific flaws or suspected flaws (as Damiano
did), and not marketing labels.

SZ
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.