ids:snort:snort_rule_format
This is an old revision of the document!
IDS - Snort - Snort Rule Format
Snort Rule
alert tcp any 21 -> 192.168.1.123 any (msg: "TCP Packet is Detected";sid:100010)
NOTE: This is comprised of the:
- Rule Header:
- |Action|Protocol|Source Address|Source Port|Direction|Destination Address|Destination Port|
- Rule Option:
- The msg.
ids/snort/snort_rule_format.1627288796.txt.gz · Last modified: 2021/07/26 08:39 by peter