[Oisf-users] Suricata: fail to detect reverse shell?

Cooper F. Nelson cnelson at ucsd.edu
Wed Nov 27 18:36:07 UTC 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

It impacts performance and generates a fair amount of false positives.

On 11/27/2013 6:44 AM, corenor wrote:
> Generally wondering why the default config ignores port 80, is that a major
> impact to performance?
> 
> 


- -- 
Cooper Nelson
Network Security Analyst
UCSD ACT Security Team
cnelson at ucsd.edu x41042
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.17 (MingW32)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/

iQEcBAEBAgAGBQJSljuXAAoJEKIFRYQsa8FWxeQH/iggKwYJIP5w0Q/1d3vV2bw1
T22kHeLAHb1ETFsqAop4BbxCVkbtevSfD/T7/UHqXotHOK6dpwTruIQuFI/WhDPf
9i99GOlu/vWeQsK/xoBmuH60BXe1sWWByzZLIgY6vJL611F/myYOvOciFXtAHbTD
iBM0UaQdK6MRg+GQq2oZ2jYR3ffJF5Sk22+q07e/g04tldI/a1rWUGReifS9vZot
miwkRpZoDPS1zPtGrGiTeWO7R450iSFi50QR6BOSH4G3Upo0wkSLhh9U3drgWY71
+SvD612jB8eF88/zEhOAtgwm8oGEe9x71/JoID2zWwSzR9Jh2AfW0FGw09mNM4w=
=vhv6
-----END PGP SIGNATURE-----



More information about the Oisf-users mailing list