Snort mailing list archives

Re: XML Log parsers


From: "Michael Davis" <mike () datanerds net>
Date: Thu, 21 Nov 2002 19:04:38 -0600

For XML parsing you can try the Xerces-C Library: It works on every major
OS.

http://xml.apache.org/xerces-c/index.html

Michael Davis
Chief Technical Officer
DataNerds
http://www.datanerds.com
----- Original Message -----
From: "Sleepy" <sleepy () maximumunix org>
To: "pix" <pix () aea it>
Cc: "Jacob Redding" <dextor () wiredgeek com>;
<snort-users () lists sourceforge net>
Sent: Thursday, November 21, 2002 6:45 PM
Subject: Re: [Snort-users] XML Log parsers


No , it doesnt have to be, I am evaluating what I could use to do this
with
on Unix. I dont want to use Kylix because then i ll have to find yet one
more library to do the same with OpenBSD.
but for now , I want to finish the win32 version. I will look afterwards
for
the Unix version. I am releasing this under GPL  so you guys feel free to
do
whatever.
Release is scheduled for sometime next week.

----- Original Message -----
From: "pix" <pix () aea it>
To: "Sleepy" <sleepy () maximumunix org>
Cc: "Jacob Redding" <dextor () wiredgeek com>;
<snort-users () lists sourceforge net>
Sent: Thursday, November 21, 2002 10:52 AM
Subject: Re: [Snort-users] XML Log parsers


Sleepy wrote:

Yes , I have a screenshot, go to
http://www.maximumunix.org/images/ScreenShotSnort.jpg

the only part left from the Grid is converting the References to URL's,
should  be pretty easy.
it is fairly simple to make this project the next ACID, I just wanna
know
if
people would like to have such a win32 utility, please send all your
comments, thoughts and flame :-)

Cheers

----- Original Message -----
From: "Jacob Redding" <dextor () wiredgeek com>
To: "Sleepy" <sleepy () maximumunix org>
Cc: <snort-users () lists sourceforge net>
Sent: Wednesday, November 20, 2002 7:52 PM
Subject: Re: [Snort-users] XML Log parsers




 Do you have any examples of the output it produces? (screenshots,
sample
web page).

-Jacob

On Wed, 20 Nov 2002, Sleepy wrote:



Hello everyone :

my first post on the snort mailing list. great tools, thanks to


everyone who made is happen.


I was curious if there are parsers or log viewers for XML logs
produced


by snort? if the xml output format is popular? if people would like to
have
such a tool if it doesnt already exist?


I wrote such a thing, it is still in the work, I am planning on


continuing developing it if people needs such a thing. it is Win32
based
but
can be easily ported to linux ( Borland is my DE)


I appreciate any and all feedbacks.

Thanks

sleepy






-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users



Yes.

Very interested.

But only on unix-like systems.

pix





-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users




-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: