 |

12-15-2008, 03:38 PM
|
|
Member
|
|
Join Date: Oct 2005
Posts: 92
|
|
Custom IDS rules coming?
Hi,
With the latest IE zero day threat out , it sure would be nice to have the ability once again to create a custom rule.
Any idea when this feature will be added back?
Thanks
-Scott
|

12-17-2008, 09:47 AM
|
|
Member
|
|
Join Date: Apr 2003
Location: Koeln,Germany
Posts: 87
|
|
At CVS log for sigs/CURRENT_EVENTS/CURRENT_IE_0Day
there are SNORT rules mentioned. How to insert them into the ASG?
__________________
* ASG 320 V7 Appliance & ASG Software V7 Home * Astaro Certified Engineer V6 *
|

12-17-2008, 05:10 PM
|
|
Wizard
|
|
Join Date: May 2003
Location: Brunswick, Maryland, USA
Posts: 2,667
|
|
Quote:
Originally Posted by Marcel_Germany
|
you can't right now unless you head to the command line as astaro has not returned the long promised custom rules to us yet.
|

06-26-2009, 12:23 PM
|
|
Member
|
|
Join Date: Nov 2006
Location: .de
Posts: 90
|
|
How can you create own snort-rules on the command line? Astaro-Support says, its not possible!
__________________
Christoph
using astaro since v3
asg120 killer 
|

06-30-2009, 08:37 AM
|
|
Member
|
|
Join Date: Nov 2006
Location: .de
Posts: 90
|
|
nobody an idea?
__________________
Christoph
using astaro since v3
asg120 killer 
|

07-01-2009, 04:30 AM
|
 |
Aussie moderator.
|
|
Join Date: Jun 2001
Location: Perth, Western Australia
Posts: 2,628
|
|
Wait till the next version. I believe it may be in 7.5 but please check.
__________________
Simon Shaw
Systems Manager
Micromine PL
Intel 2.66GHz Quad Core, 4GB (2 x 2GB) PC-6400 800Mhz 4-4-4-12, WD 300GB 10K RPM VelociRaptor, Intel Pro/1000 Quad Port PCI-X
http://www.sputcorp.com/
|

07-01-2009, 05:12 AM
|
|
Senior Member
|
|
Join Date: Feb 2006
Posts: 445
|
|
Well, it certainly isn't in the beta for 7.5. It could be added into an interim release after that.
|

10-25-2009, 05:29 AM
|
|
Member
|
|
Join Date: Mar 2003
Posts: 51
|
|
Did this finally happen?
|

10-25-2009, 05:42 AM
|
|
Moderator
|
|
Join Date: Jul 2001
Location: southern California
Posts: 5,140
|
|
Unfortunately not.
You can vote for it at
make own snort rules possible
Barry
__________________
http://DealBert.net
Home & business end-user since v1.x - ASL 6.3x, HP DL145 Dual Opteron, 1GB RAM, 6 gigE NICs, 50-IP Platinum License
- ASL 7.3x, Dell PE1550 Dual PIII 1GHz, 1GB RAM, 2 NICs, 50-IP Platinum License
- ASL 7.5x, 17-watt fanless mini-ITX system: MSI IM-945GSE-A Atom n270, 2GB RAM, Morex T3310 case. 2 Intel GigE, 3 VLANs. 80G 5200rpm 2.5" HD
Netgear GS108T gigE VLAN switch & Linksys WRT54G WAP
Total network infrastructure: 27 watts. 100-IP Home User. FiOS 10mb/2mb
|

10-25-2009, 12:34 PM
|
|
Member
|
|
Join Date: Mar 2003
Posts: 51
|
|
I voted. I know this would not be supported but is there anyway to alter the defined rules at the console by updating a config file of some sort manually?
|
| Thread Tools |
|
|
| Display Modes |
Linear Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
All times are GMT. The time now is 11:03 PM.
| |  |