Snort IDS challenge 3 handshake

Selamat warga devilcode…

Berdasarkan ilustrasi Network packet selepas crafted/obsecure protocol kita dpt new 3 handshake…

SYN
FIN-ACK
ACK

tuliskan rule snort atau suricata deteksi stateful packet tersebut …

kaga ngarti :hammer

maknanye kamu kena tulis rule detect statefull each state correlate each other

SYN
FIN-ACK
ACK

masih :bingung: aku cara kerjanya :pusing:

mudah je…tuliskan rule yg follow new crafted 3 handshake statefull spt
SYN-FIN/ACK-ACK

bukan lagi 3 handshake SYN-SYN/ACK-ACK