On Tue, May 22, 2001 at 11:55:59AM -0500, Joe Barr wrote:
> What is ECN? Is it the reason SNORT has started this lately:
http://vger.kernel.org/
Follow the links, and you will get an exellent answer.
>
> Active System Attack Alerts
> =-=-=-=-=-=-=-=-=-=-=-=-=-=
> May 22 10:11:18 pooh sn
What is ECN? Is it the reason SNORT has started this lately:
Active System Attack Alerts
=-=-=-=-=-=-=-=-=-=-=-=-=-=
May 22 10:11:18 pooh snort: spp_portscan: PORTSCAN DETECTED from 199.183.24.194
(STEALTH)
May 22 10:11:22 pooh snort: spp_portscan: portscan status from 199.183.24.194: 1
co
Folks, don't speculate. You are late anyway.
We just had ECN off for two hours, and all sites which didn't
commit harakiri at their firewalls ("bad TCP frame from that address,
I will place that source into dead list") now either got their message,
or are having some long-term troubles
At 10:18 AM 5/22/01, Steve Modica wrote:
>Perhaps it's none of my business, but it doesn't seem very sporting to
>just turn something on that breaks stuff and say "you had fair
>warning". Why not shut it back off, issue a statement saying it works
>now and will be re-enabled on June 10th or som
4 matches
Mail list logo