Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- alert http $EXTERNAL_NET any -> $HOME_NET [8083, 8443] (msg:"HTTP traffic to 8083 or 8443 port detected";classtype:suspicious;sid:001;rev:1;)
- alert tcp $EXTERNAL_NET any -> $HOME_NET 3336 (msg:"mysql traffic to 3336 port detected";classtype:suspicious;sid:002;rev:1;)
- alert tcp $EXTERNAL_NET any -> $HOME_NET 2288 (msg:"ssh traffic to 2288 detected";app-layer-protocol:ssh;classtype:suspicious;sid:003;rev:1;)
- alert tcp $EXTERNAL_NET any -> $HOME_NET 2288 (msg:"ftp traffic to 2288 detected";app-layer-protocol:ftp;classtype:suspicious;sid:004;rev:1;)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement