487.txt
来自「snort入侵检测规则文件2.4 Snort是众所周知的网络入侵检测工具」· 文本 代码 · 共 68 行
TXT
68 行
Rule:--Sid:486--Summary:This event is generated when an ICMP destination unreachable(Communication with Destination Host is Administratively Prohibited)datagram is detected on the network. --Impact:This message is generated when a datagram failed to traverse thenetwork. This could be an indication of routing or network problems.--Detailed Information: This rule generates informational events about the network. Largenumbers of these messages on the network could indication routingproblems, faulty routing devices, or improperly configured hosts.--Attack Scenarios:None known.--Ease of Attack:Numerous tools and scripts can generate these types of ICMP datagrams.--False Positives:None known.--False Negatives:None known.--Corrective Action:This rule detects informational network information, so no correctiveaction is necessary.--Contributors:Original Rule writer unknownSourcefire Research TeamMatthew Watchinski (matt.watchinski@sourcefire.com)--Additional References:None.--
⌨️ 快捷键说明
复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?