You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
suricata/doc/userguide/rules/snmp-keywords.rst

23 lines
478 B
ReStructuredText

SNMP keywords
=============
snmp.version
------------
SNMP protocol version (integer). Expected values are 1, 2 (for version 2c) or 3.
Syntax::
snmp.version:[op]<number>
The version can be matched exactly, or compared using the _op_ setting::
snmp.version:3 # exactly 3
snmp.version:<3 # smaller than 3
snmp.version:>=2 # greater or equal than 2
Signature example::
alert snmp any any -> any any (msg:"old SNMP version (<3)"; snmp.version:<3; sid:1; rev:1;)