[Smoothsec-talk] Newbie Question - Snort Alerts
IDS/IPS Linux distribution.
Brought to you by:
p0bailey
From: David M. <dav...@jp...> - 2012-08-01 17:11:46
|
Hi, I just got smoothsec installed today. Very straightforward install except for requiring firmware to load the Broadcom NIC. Anyway, I haven't really touched the config, but i'm getting lots of alerts that look like: Snort Alert [1:2210020:0] Thinking the 2210020 bit was a Snort ID, I tried clicking on "Query Signature Database" but that came back with no results and I can't find reference to it in the .map files. Am I missing something obvious? Any help would be appreciated. David |