I did some portscan tests from various sites, but Snort will not detect port
scans or even trojan port scans (even with all rules enabled). You can
clearly see all the blocked requests in the Firewall log but only icmp pings
are logged with Snort Log.
Is this normal behaviour from Snort or is there something wrong with this
Snort in m0n0wall?
Thanks,
Timothy
> The links:
>
> http://xoomer.virgilio.it/ortaj/m0n0/pc-generic-1.1b17-snort.img.gz
> http://xoomer.virgilio.it/ortaj/m0n0/wrap-1.1b17-snort.gz
> http://xoomer.virgilio.it/ortaj/m0n0/cd-1.1b17-snort.iso.gz
>
>
>
>
|