snort problem
dlewis
dlewis at linux.com
Fri Oct 19 14:42:55 EDT 2001
Hello all. I have been receiving these inputs in my alert file from snort:
10/18-00:29:27.524950 [**] [1:528:2] BAD TRAFFIC loopback traffic [**]
[Classification: Potentially Bad Traffic] [Priority: 2] {UDP}
127.0.0.1:2301 -> 255.255.255.255:2301
10/18-00:30:27.596189 [**] [1:528:2] BAD TRAFFIC loopback traffic [**]
[Classification: Potentially Bad Traffic] [Priority: 2] {UDP}
127.0.0.1:2301 -> 255.255.255.255:2301
10/18-00:31:27.725125 [**] [1:528:2] BAD TRAFFIC loopback traffic [**]
[Classification: Potentially Bad Traffic] [Priority: 2] {UDP}
127.0.0.1:2301 -> 255.255.255.255:2301
10/18-00:32:27.834094 [**] [1:528:2] BAD TRAFFIC loopback traffic [**]
[Classification: Potentially Bad Traffic] [Priority: 2] {UDP}
127.0.0.1:2301 -> 255.255.255.255:2301
10/18-00:33:27.933912 [**] [1:528:2] BAD TRAFFIC loopback traffic [**]
[Classification: Potentially Bad Traffic] [Priority: 2] {UDP}
127.0.0.1:2301 -> 255.255.255.255:2301
This comes up a lot... Anyone have any idea as to why I am getting this?
Thank you.
-
Subcription/unsubscription/info requests: send e-mail with
"subscribe", "unsubscribe", or "info" on the first line of the
message body to discuss-request at blu.org (Subject line is ignored).
More information about the Discuss
mailing list