CVS log for snort/Attic/backdoor.rules |
 |
|
Up to [cvs] / snort
Request diff between arbitrary revisions
Default branch: MAIN
Bookmark a link to:
HEAD
/
(download)
Revision
1.15.2.10
/
(view)
- annotate
- [select for diffs]
, Mon Aug 12 01:51:14 2002 UTC (6 years, 4 months ago) by cazz
Branch:
SNORT_1_8
Changes since 1.15.2.9: +13 -13 lines
Diff to previous 1.15.2.9
to branch point 1.15
to next main 1.16
* massive sync from current
Revision
1.15.2.9
/
(view)
- annotate
- [select for diffs]
, Wed Jun 5 15:16:20 2002 UTC (6 years, 7 months ago) by cazz
Branch:
SNORT_1_8
CVS Tags:
version1-8-7-release
Changes since 1.15.2.8: +0 -0 lines
Diff to previous 1.15.2.8
to branch point 1.15
* massive sync from CURRENT
Revision
1.15.2.8
/
(view)
- annotate
- [select for diffs]
, Wed May 8 02:36:03 2002 UTC (6 years, 8 months ago) by cazz
Branch:
SNORT_1_8
Changes since 1.15.2.7: +0 -0 lines
Diff to previous 1.15.2.7
to branch point 1.15
* massive sync. everything has an sid, no flows in enabled signatures.
NOTE: Signatures within a .rules file that are disabled are disabled FOR A
REASON! If you re-enable signatures, you run the risk of breaking things.
Don't re-enable signatures without knowing WHY you want to do this.
Revision
1.15.2.7
/
(view)
- annotate
- [select for diffs]
, Sun Apr 28 16:53:27 2002 UTC (6 years, 8 months ago) by cazz
Branch:
SNORT_1_8
Changes since 1.15.2.6: +3 -1 lines
Diff to previous 1.15.2.6
to branch point 1.15
* massive sync from CURRENT
Revision
1.15.2.6
/
(view)
- annotate
- [select for diffs]
, Tue Apr 9 17:42:07 2002 UTC (6 years, 9 months ago) by cazz
Branch:
SNORT_1_8
Changes since 1.15.2.5: +0 -0 lines
Diff to previous 1.15.2.5
to branch point 1.15
* massive backport of sigs
(NOTE: The REVS are the same as CURRENT. From now on, we will be doing
maintance of signatures in 1.9 and backporting sigs back to STABLE)
Revision
1.15.2.5
/
(view)
- annotate
- [select for diffs]
, Thu Mar 14 17:28:03 2002 UTC (6 years, 9 months ago) by chrisgreen
Branch:
SNORT_1_8
CVS Tags:
version1-8-1release
Changes since 1.15.2.4: +0 -0 lines
Diff to previous 1.15.2.4
to branch point 1.15
* resynch rules
* prep build # for 1.8.4
* change build name
* update ChangeLog/News
* boundary condition checks for frag2
Revision
1.15.2.4
/
(view)
- annotate
- [select for diffs]
, Sat Mar 2 05:33:01 2002 UTC (6 years, 10 months ago) by cazz
Branch:
SNORT_1_8
Changes since 1.15.2.3: +3 -3 lines
Diff to previous 1.15.2.3
to branch point 1.15
* yet another synch of signatures
Revision
1.15.2.3
/
(view)
- annotate
- [select for diffs]
, Wed Feb 27 19:12:59 2002 UTC (6 years, 10 months ago) by chrisgreen
Branch:
SNORT_1_8
Changes since 1.15.2.2: +2 -2 lines
Diff to previous 1.15.2.2
to branch point 1.15
* preliminary rule merge from the 1.9 branch ( sans experimental.rules )
Revision
1.15.2.2
/
(view)
- annotate
- [select for diffs]
, Wed Feb 13 19:39:11 2002 UTC (6 years, 10 months ago) by cazz
Branch:
SNORT_1_8
Changes since 1.15.2.1: +2 -2 lines
Diff to previous 1.15.2.1
to branch point 1.15
* Massive sync of signatures from CURRENT
Revision
1.15.2.1
/
(view)
- annotate
- [select for diffs]
, Wed Jan 30 12:50:57 2002 UTC (6 years, 11 months ago) by cazz
Branch:
SNORT_1_8
Changes since 1.15: +3 -4 lines
Diff to previous 1.15
* synched rules & all related cruft to the stable tree.
(this does not include experimental.rules)
Revision 1.16
, Tue Dec 4 06:32:57 2001 UTC (7 years, 1 month ago) by natasha
Branch:
MAIN
CVS Tags:
HEAD
Changes since 1.15: +1 -1 lines
FILE REMOVED
*** empty log message ***
Revision
1.15
/
(view)
- annotate
- [select for diffs]
, Tue Oct 30 05:39:23 2001 UTC (7 years, 2 months ago) by cazz
Branch:
MAIN
Branch point for:
SNORT_1_8
Changes since 1.14: +105 -105 lines
Diff to previous 1.14
* oops. forgot the trailing ; after bumping the rev.
Revision
1.14
/
(view)
- annotate
- [select for diffs]
, Tue Oct 30 05:31:34 2001 UTC (7 years, 2 months ago) by cazz
Branch:
MAIN
Changes since 1.13: +105 -105 lines
Diff to previous 1.13
* add a classification to those rules without.
(used misc-activity as the default)
Revision
1.13
/
(view)
- annotate
- [select for diffs]
, Tue Oct 30 01:19:39 2001 UTC (7 years, 2 months ago) by cazz
Branch:
MAIN
Changes since 1.12: +2 -2 lines
Diff to previous 1.12
* disabled a completely stupid rule
Revision
1.12
/
(view)
- annotate
- [select for diffs]
, Mon Oct 29 01:52:54 2001 UTC (7 years, 2 months ago) by roesch
Branch:
MAIN
Changes since 1.11: +2 -1 lines
Diff to previous 1.11
* Added copyright notices so that the Intrusion.com people might take our intellectual
property a bit more seriously
Revision
1.11
/
(view)
- annotate
- [select for diffs]
, Tue Sep 25 14:15:18 2001 UTC (7 years, 3 months ago) by cazz
Branch:
MAIN
Changes since 1.10: +1 -2 lines
Diff to previous 1.10
* regen sid-msg.map
* correct a few msgs.
* add sid,rev to http dir listing
* corrected MSGs for a number of rules
Revision
1.10
/
(view)
- annotate
- [select for diffs]
, Tue Sep 25 04:07:41 2001 UTC (7 years, 3 months ago) by cazz
Branch:
MAIN
Changes since 1.9: +2 -2 lines
Diff to previous 1.9
* Added descriptions to many of the .rules files. (More to come soon)
* cleaned up a few any any rules
* cleaned up the name of a few rules
* Created attack-responces.rules (for generic responces of known attacks)
* Created bad-traffic.rules (for signatures that shouldn't happen on a
'good' network)
* normalized a few msgs.
* changed order telnet.rules to speed up the exploit signatures
* added sml3com access signature (need to write an overflow attempt sig,
but don't have a 3com router to test it. any takers?)
Revision
1.9
/
(view)
- annotate
- [select for diffs]
, Sun Aug 26 00:02:00 2001 UTC (7 years, 4 months ago) by cazz
Branch:
MAIN
Changes since 1.8: +1 -6 lines
Diff to previous 1.8
* cleaned up a huge amount of dup rules
Thanks to Jimmy Staggs for pointing out the duplicates
Revision
1.8
/
(view)
- annotate
- [select for diffs]
, Tue Jul 24 21:21:12 2001 UTC (7 years, 5 months ago) by cazz
Branch:
MAIN
Changes since 1.7: +2 -2 lines
Diff to previous 1.7
* A couple of broken rules that Marty caught
Revision
1.7
/
(view)
- annotate
- [select for diffs]
, Tue Jun 26 20:42:24 2001 UTC (7 years, 6 months ago) by cazz
Branch:
MAIN
Changes since 1.6: +2 -2 lines
Diff to previous 1.6
* Fixed typo
- noticed by Chad Dougherty
Revision
1.6
/
(view)
- annotate
- [select for diffs]
, Mon Jun 11 15:29:29 2001 UTC (7 years, 6 months ago) by cazz
Branch:
MAIN
Changes since 1.5: +122 -122 lines
Diff to previous 1.5
* added support for SID and REV.
* added sid-msg.map (maps SID to MSG)
SID is a unique ID for each rule. REV is the rule revision.
Revision
1.5
/
(view)
- annotate
- [select for diffs]
, Tue Apr 17 18:16:05 2001 UTC (7 years, 8 months ago) by cazz
Branch:
MAIN
Changes since 1.4: +3 -3 lines
Diff to previous 1.4
Where did those come from?!?
Revision
1.4
/
(view)
- annotate
- [select for diffs]
, Tue Apr 17 03:32:46 2001 UTC (7 years, 8 months ago) by cazz
Branch:
MAIN
Changes since 1.3: +13 -2 lines
Diff to previous 1.3
* Changed default $HOME_NET to any (watch as marty changes it right back :P)
* Added classifications to almost every rule
NOTE:
We are currently using IDMEF's classifications. This may change soon.
This is an extremely SIMPLE and well defined set of rule classifications
and priorities. It is completely changeable. Read sp_priority and
classification.conf for more information.
Revision
1.3
/
(view)
- annotate
- [select for diffs]
, Thu Apr 5 15:24:11 2001 UTC (7 years, 9 months ago) by cazz
Branch:
MAIN
Changes since 1.2: +3 -3 lines
Diff to previous 1.2
updated broken rules from last database export
Revision
1.2
/
(view)
- annotate
- [select for diffs]
, Wed Apr 4 23:07:50 2001 UTC (7 years, 9 months ago) by cazz
Branch:
MAIN
Changes since 1.1: +32 -28 lines
Diff to previous 1.1
Added x11.rules, x11.rules, and virus.rules
Revision
1.1
/
(view)
- annotate
- [select for diffs]
, Sat Mar 10 15:42:09 2001 UTC (7 years, 10 months ago) by roesch
Branch:
MAIN
* Disabled reseerved bits scan detection, false positives for ECN traffic
aren't detectable with the current code and I'm seeing a lot of noise
out there about this...
* committed the new rules set from Forster/Caswell
This form allows you to request diffs between any two revisions of
a file. You may select a symbolic revision name using the selection
box or you may type in a numeric name using the type-in text box.