标题 | 阅读 | 评论 | 转发 | 发布日期 | |
---|---|---|---|---|---|
Linux字符模式下的“远程桌面共享”及屏幕录制 | 2392 | 1 | 0 | 2008-12-09 | |
身份证号校验及属地查询[Shell脚本]-UTF8版 | 4104 | 0 | 0 | 2008-12-04 | |
配置源码安装的MySQL同时支持多个字符集 | 1702 | 0 | 1 | 2008-11-27 | |
基于NAT、DR方式的LVS负载均衡简记 | 2298 | 0 | 0 | 2008-11-21 | |
构建简易Snort网络入侵检测系统(NIDS) | 4087 | 0 | 2 | 2008-11-19 | |
使用rsync+inotify配置触发式(实时)远程同步 | 2107 | 0 | 0 | 2008-11-14 | |
cacti 监控磁盘使用率并报警方法 | 1953 | 0 | 1 | 2008-11-08 | |
为iptables增加layer7补丁(Linux2.6.25内核) | 2153 | 2 | 0 | 2008-11-02 | |
为CACTI系统安装Thold、Monitor插件 | 2436 | 0 | 0 | 2008-10-01 | |
为RHEL5架设本地yum源(From DVD镜像) | 2624 | 0 | 0 | 2008-09-02 | |
Squid集群做CDN全网加速 | 1218 | 0 | 1 | 2008-08-01 | |
在Windows系统中建立防普通删除文件夹 | 1289 | 1 | 0 | 2008-06-18 | |
在RHEL5中搭建CACTI监控系统 | 2639 | 0 | 0 | 2008-05-19 | |
几则Excel 2003使用小技巧 | 1543 | 0 | 0 | 2008-03-19 | |
无聊时做道测验题 | 2024 | 1 | 0 | 2008-03-02 | |
配置Linux下的动态DNS服务全攻略 | 2408 | 0 | 0 | 2008-01-11 | |
配置Apache服务的digest摘要认证 | 2572 | 0 | 1 | 2008-01-04 |
chinaunix网友2009-05-05 10:02
在配置文件snort.conf中加入下列一行 alert tcp any any -> any any (flags:S; msg:"SYN Packets Alert!"; sid:20081122客户访问在网页上可以产生报警,并在mysql数据库中可以看到报警的记录存入,去掉后该行后,利用常见扫描软件如Languard、bluescan、nmap -sS Server_IP扫描等均不报警,请请您帮忙看看,使用哪个工具进行扫描或攻击才可以让其报警, 另在启动过程中出现下列警告,请帮忙看看是否正常 Warning: 'ignore_any_rules' option for Stream5 UDP disabled because of UDP rule with flow or flowbits option Warning: flowbits key 'Backdoor.Bersek.Init' is set but not ever checked. Warning: flowbits key 'wmf.download' is set but not ever checked. Warning: flowbits key 'snipernet' is set but not ever checked. Warning: flowbits key 'backup_file.request' is set but not ever checked. Warning: flowbits key 'Mantis_Notify2' is set but not ever checked. Warning: flowbits key 'MinicomLite' is set but not ever checked. Warning: flowbits key 'emf.request' is set but not ever checked. 另外请推荐在SNORT网页下载那个库比较适用谢谢了 msn:navywang@msn.com