I fully agree with you... The IP list grows far too fast to manage and is not always relieable. Can you post the sig you created for storm worm?Thx,Jeff
Bleeding Edge has over 800 sites in their IDS rules http://www.bleedingthreats.net/rules/bleeding-storm.rulesWhy is Cisco not creating sigs for this threat?Coming from a Fortune 50 company I feel this is unacceptable. It's time to recommend a new ID...