<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Sigs on Inliniac</title>
    <link>https://inliniac.net/blog/tag/sigs/</link>
    <description>Recent content in Sigs on Inliniac</description>
    <generator>Hugo</generator>
    <language>en</language>
    <lastBuildDate>Sat, 16 Jun 2007 12:37:13 +0000</lastBuildDate>
    <atom:link href="https://inliniac.net/blog/tag/sigs/feed.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Debian should update their Snort package</title>
      <link>https://inliniac.net/blog/2007/06/16/debian-should-update-their-snort-package/</link>
      <pubDate>Sat, 16 Jun 2007 12:37:13 +0000</pubDate>
      <guid>https://inliniac.net/blog/2007/06/16/debian-should-update-their-snort-package/</guid>
      <description>&lt;p&gt;Last week there was some discussion in the #snort IRC channel about why Debian distributes such an ancient version of Snort, namely version 2.3.3. This release is more than 2 years old and no longer supported by &lt;a href=&#34;http://www.sourcefire.com&#34;&gt;SourceFire&lt;/a&gt;. The snort.org website says about the old versions:&lt;/p&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;p&gt;You should not use these unless you &lt;strong&gt;really&lt;/strong&gt; know what you are doing. Many bugs may have been fixed, including remote vulnerabilities&lt;/p&gt;&lt;/blockquote&gt;&#xA;&lt;p&gt;Even though Debian is able to fix any security bugs themselves, and they don&amp;rsquo;t need to rely on SourceFire for this, Snort 2.3.3 is still going to be inferior to the recent 2.6.1.5. Why? Well recent Snort versions have many more and improved detection options, such as a better pattern matcher, defragmentation preprocessor, improved stream preprocessor, smtp plugin, etc, etc.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
