Snort mailing list archives
Re: running snort
From: Erek Adams <erek () theadamsfamily net>
Date: Mon, 4 Mar 2002 10:08:41 -0800 (PST)
On Mon, 4 Mar 2002 NoLiMiT1961 () aol com wrote:
In the FAQ It said in order to run snort in sniffer mode .Run snort like this to see if i see any packets...snort -dvi eth0 ok and i did see packet's now how do i run it with HOME_NET and also set it for the approriately for the network im defending in my rule file snort.conf?
OK, I'm assuming since you found the FAQ you know of the docs page on snort.org. Since you are, the answer can be found in the Snort Users Guide that's there. It's also in the snort man page (snort.8). RTFM, set your configuration variables accordingly in the snort.conf file and then fire it up. In short a "snort -c snort.conf" will work as soon as you have the .conf file configured correctly. Hope that helps! ----- Erek Adams Nifty-Type-Guy TheAdamsFamily.Net _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- running snort NoLiMiT1961 (Mar 04)
- Re: running snort Erek Adams (Mar 04)
- <Possible follow-ups>
- RUNNING SNORT NoLiMiT1961 (Mar 04)