Question: Snort Rules: In this assignment you will be interpreting several Snort rules and creating some of your own. Submit your responses in a Word or

Snort Rules: In this assignment you will be interpreting several Snort rules and creating some of your own. Submit your responses in a Word or other text document and be sure to include a copy of the question Section 1: Interpreting Snort Rules - Describe what each of these rules do 1) alert tcp SEXTERNAL NET 80->SHOME_NET ay(otent:evil"; sid:5555555; rev:1;) 2) alert tcp SEXTERNAL NET 22- >SHOME_NET any (ms:SSH Traffic from external network"; sid:5666555; rev:1;) 3) alert tcp SEXTERNAL NET any >SHOME NET 80 (ms:WEB Traffic on port 80"; sid:666555; rev:1;) 4) alert tcp SEXTERNAL_NET any-> SHOME_NET 21 (msg: Odd FTP traffic"; contentelanonymous" sid:566655; rev:12;)
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
