Hi,I am trying to create a custom signature for HTTPS Bruteforce
detection (SSL inspection enabled) and I have the following syntax:
F-SBID (--name Website.Brute.Force.CustomBody; --protocol TCP; --flow
from_server; --pattern "failed because"; --cont...
Hi, thx for your answer, but even if i added "reversed" the detection is
not working properly.F-SBID(--name Website.Brute.Force; --protocol TCP;
--flow from_server,reversed; --pattern "failed because"; --context body;
--rate 6,60,limit; --track SRC_I...