How use snort with local.rules in offline mode?
I’m using SecurityOnion distro and I would to run snort on my pcap files. Is there a way to specify just one rule? I couldn’t understand whether local.rules is used.
How can I show only the result of my rules instead of sta… Continue reading How use snort with local.rules in offline mode?