http get and gif的鼻子规则在URI中
我陷入了一个沉浸式实验室问题(现在为期4天),我把头撞在键盘上。问题是“创建一个寻求http方法”并在URL中包含“ gif”的Snort规则。
但这是错误的,我看不出为什么?!
这是我写的, 任何80(内容:“ get”; http_method; content:“ gif”; http_uri; sid; sid:1000001; rev:01;)
我是一百万英里之外吗?我关闭了吗?是语法吗?请帮忙!
I'm stuck on an Immersive Labs question (4 days now) and I'm banging my head off the keyboard. The question is 'Create a Snort rule that looks for an HTTP method ‘GET’ and contains ‘gif’ in the URL'.
This is what I have written but it's wrong and I can't see why?!:
alert tcp any any > any 80 (content: “GET”; http_method; content:”gif”; http_uri; sid:1000001; rev:01;)
Am I a million miles away? Am I close? Is it the syntax? Please help!
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。

绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(1)
我也被困在这个。该解决方案需要一个查找我发现双向流量的签名,所以是的,您非常接近
I was also stuck on this one. The solution requires a signature that looks for bi-directional traffic I found so yes you were very close ????