Title: snort rule state to DROP does not work Post by: kikilinux on Wednesday 04 June 2014, 04:53:45 am Hi
I changed the state of all snort rules to DROP but when I inject a SQL query the logs shows the sql injection but the request is passed to the server . When i checked the signatures in /var/signatures/snort/processed/auto/ directory all the rules in each file have alert state. whats the problem? does it exist any solution to correct it manualy ? |