Most simple, favourite snort test rule

alert tcp any any -> any any (msg:”My TEST rule”; flow:stateless; sid:66666;)

Leave a Reply

You must be logged in to post a comment.