HTTP reply

wushi at guanghua.sh.cn wushi at guanghua.sh.cn
Sun Mar 17 22:45:31 PST 2002


Hi,all:
	I think sometimes HTTP reply  especially the first line is very useful. Through it, we can know whether the attack is successful.
That is right?	Forgive me poor English. Another question, How to detect the syn flood attack using Bro? May I use a timer In th Bro's
interpret,so we can know the    statistic of some network event?
										wushi
										2002.3.18			 



More information about the Bro mailing list