This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Rule writing guide.

I'm having issues writing IPS rules for Astaro.  I know basic Snort syntax, but it seems like you need to modify your syntax a bit with ASG.  Is there a guide somewhere that indicates the way to deal with rule writing in the modified syntax?


This thread was automatically locked due to age.
Parents
  • If you're using 7.x, one can't add custom rules... If you're running 6.x, I think there's a KB article on their knowledgebase.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

Reply
  • If you're using 7.x, one can't add custom rules... If you're running 6.x, I think there's a KB article on their knowledgebase.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

Children