Snort mailing list archives
Re: (no subject)
From: Joe Giles <jgiles () joeman1 com>
Date: Tue, 24 Sep 2002 16:56 MDT
Im not too sure about the exit problem, but I use ACID (Analysis Console for Intrusion Databases) and a MySQL server to store all my IDS data. Then I can call up the ACID database and look through all the garbily gook that snort puts out(Keep in mind that this is importiant garbily gook :-P).
I belive there is a link on the snort website that has documentation for this type of setup.
Let me know if you need aditional help .. Thanks And, Good luck with the Exit Error problem :) Joe Roger Parx writes:
Hi I am new to Snort and have a few nagging questions for the merciful person who can spare time to reply to this mesage. 1) I set Snort1.8 to run on a Redhat linux7.2 based machine over the week-end and found snort halted on monday with the following message on screen: Received signal 3, exiting. Is that a default timeout programmed into snort to prevent it from running for prolonged time? How is it different from the "Received signal 2, exiting" signal that we get when we exit snort using Ctrl+C. 2) How can I search the content of multiple log files/folders simultaneously for a string? For example after I have logged sufficient traffic using the command: snort -dev ./snortlog ( snortlog is the folder I want to log thetraffic in ) how can I search through the traffic of a range of ip addresses, which are saved in folders (named after the ip addresses) Thank you RogerGet more from the Web. FREE MSN Explorer download : http://explorer.msn.com
------------------------------------------------------- This sf.net email is sponsored by:ThinkGeek Welcome to geek heaven. http://thinkgeek.com/sf _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- (no subject), (continued)
- (no subject) S.M.Karthik (Aug 26)
- (no subject) Lionel Fairon (Aug 28)
- Re: (no subject) Roman Danyliw (Sep 05)
- (no subject) Marc Dreher (Sep 06)
- Issue with barnyard & unified alert log file Marc Dreher (Sep 06)
- (no subject) Earl D. Fife (Sep 11)
- (no subject) Sergg B. (Sep 15)
- (no subject) snort bsd (Sep 22)
- (no subject) Roger Parx (Sep 24)
- RE: (no subject) Wayne T Work (Sep 24)
- Re: (no subject) Joe Giles (Sep 24)
- (no subject) Lakshmi (Sep 25)
- (no subject) 赵光明 (Sep 28)