Dec 31, 2020 #1 M MSAKARIM Full Member level 3 Joined Jun 2, 2015 Messages 154 Helped 1 Reputation 2 Reaction score 4 Trophy points 1,298 Activity points 2,528 In the Intrusion Detection System (Network-based). Which part of the attack signatures (SNORT Rules) is compared with the input IPV4 packet to know it is an attack or not
In the Intrusion Detection System (Network-based). Which part of the attack signatures (SNORT Rules) is compared with the input IPV4 packet to know it is an attack or not
Feb 19, 2021 #2 F finlay31 Newbie level 4 Joined Jan 24, 2021 Messages 7 Helped 0 Reputation 0 Reaction score 1 Trophy points 1 Activity points 38 Yes. I do have the same doubt. Can anyone help?
Mar 1, 2021 #3 M MSAKARIM Full Member level 3 Joined Jun 2, 2015 Messages 154 Helped 1 Reputation 2 Reaction score 4 Trophy points 1,298 Activity points 2,528 finlay31 said: Yes. I do have the same doubt. Can anyone help? Click to expand... I found it, the "content" part of the rule is compared with each part in the payload.
finlay31 said: Yes. I do have the same doubt. Can anyone help? Click to expand... I found it, the "content" part of the rule is compared with each part in the payload.