Skip to content

Instantly share code, notes, and snippets.

@mrlesmithjr
Created March 6, 2015 16:50
Show Gist options
  • Select an option

  • Save mrlesmithjr/25c1d919a27551cfead3 to your computer and use it in GitHub Desktop.

Select an option

Save mrlesmithjr/25c1d919a27551cfead3 to your computer and use it in GitHub Desktop.
"orig_message", "snort\[%{INT:snort_pid}\]\:.*\[%{INT:ids_gid}\:%{INT:ids_sid}\:%{INT:ids_rev}\].%{GREEDYDATA:ids_alert}.\[Classification\: %{DATA:ids_classification}\].*\[Priority\: %{INT:ids_priority}].*{%{WORD:ids_proto}}.*%{IP:src_ip}:%{INT:src_port} \-\>.*%{IP:dst_ip}:%{INT:dst_port}",
"orig_message", "snort\[%{INT:snort_pid}\]\:.*\[%{INT:ids_gid}\:%{INT:ids_sid}\:%{INT:ids_rev}\].%{GREEDYDATA:ids_alert}.\[Classification\: %{DATA:ids_classification}\].*\[Priority\: %{INT:ids_priority}].*\{PROTO:%{WORD:ids_proto}.*%{IP:src_ip} \-\>.*%{IP:dst_ip}"
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment