pfsense:suricata:rules:classification
Differences
This shows you the differences between two versions of the page.
pfsense:suricata:rules:classification [2021/01/20 11:35] – created peter | pfsense:suricata:rules:classification [2021/01/20 11:38] (current) – peter | ||
---|---|---|---|
Line 1: | Line 1: | ||
====== PFSense - Suricata - Rules - Classification ====== | ====== PFSense - Suricata - Rules - Classification ====== | ||
+ | |||
+ | < | ||
+ | # $Id$ | ||
+ | # classification.config taken from Snort 2.8.5.3. Snort is governed by the GPLv2 | ||
+ | # | ||
+ | # The following includes information for prioritizing rules | ||
+ | # | ||
+ | # Each classification includes a shortname, a description, | ||
+ | # priority for that classification. | ||
+ | # | ||
+ | # This allows alerts to be classified and prioritized. | ||
+ | # what priority each classification has. Any rule can override the default | ||
+ | # priority for that rule. | ||
+ | # | ||
+ | # Here are a few example rules: | ||
+ | # | ||
+ | # alert TCP any any -> any 80 (msg: " | ||
+ | # dsize: > 128; classtype: | ||
+ | # | ||
+ | # alert TCP any any -> any 25 (msg:" | ||
+ | # content:" | ||
+ | # | ||
+ | # The first rule will set its type to " | ||
+ | # the default priority for that type to 10. | ||
+ | # | ||
+ | # The second rule set its type to " | ||
+ | # priority to the default for that type. | ||
+ | # | ||
+ | # | ||
+ | # config classification: | ||
+ | # | ||
+ | |||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | |||
+ | |||
+ | |||
+ | # NEW CLASSIFICATIONS | ||
+ | |||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | |||
+ | |||
+ | # SC CLASSIFICATIONS | ||
+ | |||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | config classification: | ||
+ | </ | ||
---- | ---- |
pfsense/suricata/rules/classification.1611142522.txt.gz · Last modified: 2021/01/20 11:35 by peter