Snort alert description
-
i have install snort ids/ips and i have activate ALL packages
in alert section, i see :
Attempted User Privilege Gain :(smtp) Attempted response buffer overflow: 529 chars
Attempted Information Leak : (portscan) UDP Filtered Portscan
Potentially Bad Traffic : ET SCAN Suspicious inbound to MSSQL port 1433any one can explain this ?
-
Misc activity : ET POLICY Signed TLS Certificate with md5WithRSAEncryption
-
Generic Protocol Command Decode : ET INFO Session Traversal Utilities for NAT (STUN Binding Response)
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.