标题 | 阅读 | 评论 | 转发 | 发布日期 | |
---|---|---|---|---|---|
快速配置kali-2020系统环境 | 6664 | 0 | 0 | 2020-03-01 | |
构建IMAPS服务+CA证书应用 | 1862 | 0 | 0 | 2012-02-28 | |
使用rkhunter检测rootkit程序 | 2597 | 0 | 0 | 2011-12-28 | |
构建OpenVAS 4漏洞评估系统 | 5199 | 0 | 1 | 2011-05-17 | |
安装MantisBT缺陷跟踪系统 | 2411 | 0 | 0 | 2011-03-12 | |
在RHEL5中设置VNC Server服务 | 1219 | 0 | 0 | 2010-11-05 | |
禁用Linux系统中的IPv6地址 | 1227 | 0 | 0 | 2010-11-05 | |
Linux单服务器防火墙脚本框架 | 1267 | 0 | 0 | 2010-07-10 | |
Tripwire文件完整性检查 | 1557 | 0 | 0 | 2010-07-10 | |
与SYN连接相关的几个proc参数 | 1089 | 0 | 0 | 2009-08-23 | |
构建简易Snort网络入侵检测系统(NIDS) | 4107 | 0 | 2 | 2008-11-19 | |
为iptables增加layer7补丁(Linux2.6.25内核) | 2158 | 2 | 0 | 2008-11-02 | |
配置bandwidth局域网络流量监控 | 1958 | 0 | 0 | 2007-10-19 | |
配置NTOP局域网络流量监控 | 2799 | 2 | 1 | 2007-10-16 | |
在RHEL4系统中配置LIDS入侵检测系统 | 1534 | 0 | 0 | 2007-07-23 | |
在RHEL4系统中搭建系统日志服务器 | 1429 | 0 | 1 | 2007-06-14 | |
Tripwire文件完整性检查简记 | 1225 | 0 | 0 | 2007-06-13 | |
SSH转发及安全隧道的简单实现 | 1920 | 0 | 0 | 2007-06-07 | |
SSH基于口令及密钥方式的远程登陆简单实现 | 1788 | 0 | 0 | 2007-06-07 |
chinaunix网友2009-05-05 10:02
在配置文件snort.conf中加入下列一行 alert tcp any any -> any any (flags:S; msg:"SYN Packets Alert!"; sid:20081122客户访问在网页上可以产生报警,并在mysql数据库中可以看到报警的记录存入,去掉后该行后,利用常见扫描软件如Languard、bluescan、nmap -sS Server_IP扫描等均不报警,请请您帮忙看看,使用哪个工具进行扫描或攻击才可以让其报警, 另在启动过程中出现下列警告,请帮忙看看是否正常 Warning: 'ignore_any_rules' option for Stream5 UDP disabled because of UDP rule with flow or flowbits option Warning: flowbits key 'Backdoor.Bersek.Init' is set but not ever checked. Warning: flowbits key 'wmf.download' is set but not ever checked. Warning: flowbits key 'snipernet' is set but not ever checked. Warning: flowbits key 'backup_file.request' is set but not ever checked. Warning: flowbits key 'Mantis_Notify2' is set but not ever checked. Warning: flowbits key 'MinicomLite' is set but not ever checked. Warning: flowbits key 'emf.request' is set but not ever checked. 另外请推荐在SNORT网页下载那个库比较适用谢谢了 msn:navywang@msn.com