Course Solutions Uncategorized (Solved) : Consider Example Snort Rule Given Detect Syn Fin Attack Assuming Rule Isused Snort Inline Q30748493 . . . .

(Solved) : Consider Example Snort Rule Given Detect Syn Fin Attack Assuming Rule Isused Snort Inline Q30748493 . . . .

 

Consider the example Snort rule given below to detect a SYN-FINattack. Assuming this rule isused on a Snort Inline IPS, how wouldyou modify the rule to block such packets entering the homenetwork?

Alert tcp $EXTERNAL_NET any -> $HOME_NET any

( msg : “SCAN SYN FIN”; flags: SF, 12;

reference: arachnids, 198; classtype : attempted-recon;)

Expert Answer


An answer will be send to you shortly. . . . .

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Post

(Solved) : 1 Given Following List 107 22 53 85 21 6 97 6 32 Use Merge Sort Fill Following Table Shows Q37018079 . . . .(Solved) : 1 Given Following List 107 22 53 85 21 6 97 6 32 Use Merge Sort Fill Following Table Shows Q37018079 . . . .

<p dir="ltr"><img src="https://media.cheggcdn.com/media%2F51a%2F51a81b93-9634-473d-963a-b34a7ae63c01%2Fimage.png" alt="1. Given the following list 107, 22, 53, 85, 21, 6, 97, 6, 32 Use merge sort to fill the following table that shows the value" aria-describedby="d3f"/></p><p