[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[stalk:00589] [FYI] Snort1.8 is available
- To: SecurityTalk <security-talk@xxxxxxxxxxxxxxxxxxxx>
- Subject: [stalk:00589] [FYI] Snort1.8 is available
- From: MICKY <micky@xxxxxxxxx>
- Date: Tue, 10 Jul 2001 13:24:46 +0900
犬のみっきーです。
おまちかねのSnort1.8がでました。うれしいわん。
http://www.snort.org/snortnews/news.asp
# あぁ、サイト更新しなくっちゃ。
http://www.snort.org/files/snort-1.8-RELEASE.tar.gz
Version 1.8 incorporates a number of changes and new features, including
some of the following:
New things:
* Stateful inspection and TCP stream reassembly module
* High performance IP defragmenter module
* High performance unified binary output module
* Tagging allows hosts that trip events to be tracked/logged
* Unique Rule IDs for every Snort rule and new printout code make
machine processing of Snort output much easier
* Enhanced cross-reference data with alerts
* Classifications and Priorities added to rules language
* ARP spoofing detection
* "IP" is now a supported protocol type in the Snort rules language
* Back Orifice detection plugin
* Telnet normalization plugin defeats telnet and ftp evasion techniques
* RPC normalization plugin defeats RPC fragmentation evasion techniques
* CSV format output plugin
* "uricontent" keyword allows HTTP traffic to be searched for data in
the URI field only
* 802.1Q decoder support
* linux_sll decoder support
* tcp window detection plugin
* same IP detection plugin
* -T switch to test Snort config before running
* -y switch to add year to timestamps
* -I switch to print interface name in Snort alerts
* -G switch for backawards compatability with old cross-reference lookup
progs
* -L switch for naming the -b binary output file
* -k switch to tune checksum verification routines
* -z switch to run the rules engine in stateful mode (with stream4)
>----- みっきーのネットワーク研究所 -----<
> http://www.hawkeye.ac/micky <
> 所長:犬のみっきー <micky@xxxxxxxxx> <
>----------------------------------------<
--
- このメイリングリストに関する質問・問い合せ等は
- <security-talk@xxxxxxxxxx>までお知らせください
--
------------------------------------------------------------------------
ふっふっふ みんなが気づかないうちに・・・
http://present.infoseek.co.jp/news/?348960&svx=971122