[Oisf-users] Suricata / only public trafic
Amrith Z
amrith at hotmail.fr
Tue Aug 30 11:44:46 UTC 2011
Yes. This is the last line of fast.log :
08/30/2011-11:00:01.219120 [**] [1:366:7] GPL ICMP_INFO PING *NIX [**] [Classification: Misc activity] [Priority: 3] {ICMP} 172.18.5.10:8 -> 172.18.8.6:0
Thx Victor.
> Date: Tue, 30 Aug 2011 11:07:34 +0200
> From: victor at inliniac.net
> To: oisf-users at openinfosecfoundation.org
> Subject: Re: [Oisf-users] Suricata / only public trafic
>
> On 08/30/2011 11:03 AM, Amrith Z wrote:
> >
> > Thx for answering!
> >
> >
> >
> > I changed the bpf filter the way you said it, and I have still logs from my internal network.
>
> Can you post an alert from the fast.log?
>
> Regards,
> Victor
>
> --
> ---------------------------------------------
> Victor Julien
> http://www.inliniac.net/
> PGP: http://www.inliniac.net/victorjulien.asc
> ---------------------------------------------
>
> _______________________________________________
> Oisf-users mailing list
> Oisf-users at openinfosecfoundation.org
> http://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20110830/3e49df3e/attachment-0002.html>
More information about the Oisf-users
mailing list