Snort mailing list archives
Re: ACID and MySQL questions
From: roman () danyliw com
Date: Mon, 6 Aug 2001 21:14:46 US/Eastern
Hi Jason,
I am using the archive DB function in ACID. I don't see a link in ACID that will let you view the archive. I just copied the ACID files into a second directory and pointed the acid_conf to the archive db. My question is....Is that the only way to do it? Or is there something I missed? BTW, I am happy with the latest ACID build b13.
The archive database is no different than the "active" alert databaase. Hence, there is no special mechanism by which to view it.
Next question.... I can't find any info on what exactly a snort sensor that is not running MySQL needs in the way of MySQL libraries to be able to log to a central MySQL DB server. Can I get away with installing the MySQL client? So far I have been doing full blown installs of MySQL on each sensor. Anyone doing something different?
I have not confirmed this, but I suspect that in order to perform remote DB logging only the Mysql-devel library would be necessary. cheers, Roman --------------------------------------------- This message was sent using Voicenet WebMail. http://www.voicenet.com/webmail/ _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: http://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Re: ACID and MySQL questions roman (Aug 06)
- RE: ACID and MySQL questions Jason Lewis (Aug 06)
- <Possible follow-ups>
- RE: ACID and MySQL questions roman (Aug 06)
- Re: ACID and MySQL questions Rob Whelan (Aug 06)