snort -v 命令
我安装了winpcap,启动rpcapd.exe,然后运行snort -v 命令,等一会再按下ctrl+c,出现如下信息:
Snort received 1 packets
Analyzed: 1(100.000%)
Dropped: 0(0.000%)
Outstanding: 0(0.000%)
=================================
Breakdown by protocol:
TCP: 0 (0.000%)
UDP: 0 (0.000%)
ICMP: 0 (0.000%)
ARP: 0 (0.000%)
EAPOL: 0 (0.000%)
IPv6: 0 (0.000%)
ETHLOOP: 0 (0.000%)
IPX: 0 (0.000%)
FRAG: 0 (0.000%)
OTHER: 1 (100.000%)
DISCARD: 0 (0.000%)
=================================
Action Stats:
ALERTS: 0
LOGGED: 0
PASSED: 0
=================================
Snort exiting
每次都只有other类型的协议,其他类型的都没有?为什么?