[Oisf-users] Suricata / only public trafic

Amrith Z amrith at hotmail.fr
Tue Aug 30 11:44:46 UTC 2011


Yes. This is the last line of fast.log : 

08/30/2011-11:00:01.219120  [**] [1:366:7] GPL ICMP_INFO PING *NIX [**] [Classification: Misc activity] [Priority: 3] {ICMP} 172.18.5.10:8 -> 172.18.8.6:0

Thx Victor.

> Date: Tue, 30 Aug 2011 11:07:34 +0200
> From: victor at inliniac.net
> To: oisf-users at openinfosecfoundation.org
> Subject: Re: [Oisf-users] Suricata / only public trafic
> 
> On 08/30/2011 11:03 AM, Amrith Z wrote:
> > 
> > Thx for answering!
> > 
> > 
> > 
> > I changed the bpf filter the way you said it, and I have still logs from my internal network.
> 
> Can you post an alert from the fast.log?
> 
> Regards,
> Victor
> 
> -- 
> ---------------------------------------------
> Victor Julien
> http://www.inliniac.net/
> PGP: http://www.inliniac.net/victorjulien.asc
> ---------------------------------------------
> 
> _______________________________________________
> Oisf-users mailing list
> Oisf-users at openinfosecfoundation.org
> http://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
 		 	   		  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20110830/3e49df3e/attachment-0002.html>


More information about the Oisf-users mailing list