Hi.
I have a question about fmc create snort rule.
alert tcp any any -> any any (msg:"F-SCN-WEB-181102-wpscan_attempt"; flow:established, to_server; content:"User-Agent|3a 20|WPScan"; nocase; http_header; fast_pattern:only; metadata:service http; reference:url, github.com/wpscanteam/wpscan; classtype:webscan; sid:1101026; rev:1;)
I want about this snort rule, How can I setting the options?
Please help me...