Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 14 Mar 2001 02:29:17 -0500
From:      "Will Mitayai Keeso Rowe" <mit@mitayai.net>
To:        <freebsd-ports@freebsd.org>
Cc:        <freebsd-security@freebsd.org>
Subject:   RE: ICMP attacks
Message-ID:  <NEBBIEGPMLMKDBMMICFNAECNEMAA.mit@mitayai.net>
In-Reply-To: <980521178.3a7190da7ba07@mail.marketnews.com>

next in thread | previous in thread | raw e-mail | index | archive | help
i'd love to use snort, but i keep getting this:

[castle:root]/usr/ports/security/snort# make -DWITH_MYSQL=yes clean install
===>  Cleaning for snort-1.7
===>  Extracting for snort-1.7
>> Checksum OK for snort-1.7.tar.gz.

gzip: stdout: Broken pipe
===>  Patching for snort-1.7
===>  Configuring for snort-1.7



:-----Original Message-----
:From: owner-freebsd-security@FreeBSD.ORG
:[mailto:owner-freebsd-security@FreeBSD.ORG]On Behalf Of
:mharding@marketnews.com
:Sent: January 26, 2001 10:00 AM
:To: Will Mitayai Keeso Rowe
:Cc: freebsd-security@FreeBSD.ORG
:Subject: Re: ICMP attacks
:
:
:Try using a Intrusion detection system.  Snort works well for me.  
:If this is 
:just a port scan it will show a lot of different attack warnings as the 
:different ports are hit, but it will show what IP is doing it.
:
:Mason
:
:Quoting Will Mitayai Keeso Rowe <mit@mitayai.net>:
:
:> > icmp-response bandwidth limit 205/200 pps
:> > icmp-response bandwidth limit 264/200 pps
:> > icmp-response bandwidth limit 269/200 pps
:> > icmp-response bandwidth limit 273/200 pps
:> > icmp-response bandwidth limit 273/200 pps
:> > icmp-response bandwidth limit 271/200 pps
:> > icmp-response bandwidth limit 261/200 pps
:> > icmp-response bandwidth limit 268/200 pps
:> > icmp-response bandwidth limit 205/200 pps
:> > icmp-response bandwidth limit 223/200 pps
:> 
:> Is there any way to trace the people that are causing this? It's
:> becoming a
:> daily occurance and it's beginning to irritate me.
:> 
:> -Mit
:> 
:> 
:> 
:> 
:> 
:> To Unsubscribe: send mail to majordomo@FreeBSD.org
:> with "unsubscribe freebsd-security" in the body of the message
:> 
:
:
:To Unsubscribe: send mail to majordomo@FreeBSD.org
:with "unsubscribe freebsd-security" in the body of the message
:
:

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?NEBBIEGPMLMKDBMMICFNAECNEMAA.mit>