Snort mailing list archives
RE: guardian + snort again
From: "Neal Timm" <ntimm () austin rr com>
Date: Sat, 8 Sep 2001 16:14:01 -0500
It is your preference I know with the guardian I use it will pick up everything snort picks up so make sure you have your .ignore file set up. -----Original Message----- From: snort-users-admin () lists sourceforge net [mailto:snort-users-admin () lists sourceforge net]On Behalf Of Dariusz Brzeziński Sent: Saturday, September 08, 2001 08:25 AM To: snort-users () lists sourceforge net Subject: [Snort-users] guardian + snort again Hello ,
I am using both and have updated guardian to work well with snort 1.8 picking up both your problem may be what file you have guardian monitoring. I have the updated version if you want it picks up everything if you have
it
logging to syslog.
I set guardian to monitor snort's alert file - which is - I think default. I don't use syslog for snort's alerts. Should I? -- Best regards, Dariusz mailto:dariusz.brzezinski () implozja kalisz pl _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- guardian + snort again Dariusz Brzeziński (Sep 08)
- RE: guardian + snort again Neal Timm (Sep 08)