-
Notifications
You must be signed in to change notification settings - Fork 1.1k
Closed
Description
<rule id="1002" level="2">
<match>$BAD_WORDS</match>
<options>alert_by_email</options>
<description>Unknown problem somewhere in the system.</description>
</rule>
Because <match> matches the whole entry, IPv6 addresses that happen to contain "bad" (e.g. 2222:2222:2222:2222:2222:2222:2222:9bad) result in a false positive alert.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels