Snort mailing list archives

Re: Run as user?


From: Alberto Gonzalez <albertg () wwjh net>
Date: Wed, 2 Apr 2003 23:40:52 -0500 (EST)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1



According to the FAQ, the snort tool is supposed to be run as root. Is there any
way to run it as a regular user, ie. giving myself permission to read 
the stream through eth0?


(root@cerebro)(~) snort -?
[..snip..]

    -g <gname> Run snort gid as <gname> group (or gid) after initialization
    -u <uname> Run snort uid as <uname> user (or uid) after initialization

[..snip..]

make sure the logging directory has the proper permissions. And take in 
mind you won't be able to send a HUP signal. Check the snort-users archive 
i believe this came up awhile ago.

 Cheers,
 Alberto Gonzalez

- -- 
"Success comes to the person who does today, what you are thinking of doing tomorrow." 

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iD8DBQE+i7tXa3vAB/3yp/IRApk8AJ4wXXvZwU+MIIZ0O6ExdPNo/5DYCACeIAgJ
c3PCbpldS2KZgBGWUb7D6Sc=
=urJl
-----END PGP SIGNATURE-----



-------------------------------------------------------
This SF.net email is sponsored by: ValueWeb: 
Dedicated Hosting for just $79/mo with 500 GB of bandwidth! 
No other company gives more support or power for your dedicated server
http://click.atdmt.com/AFF/go/sdnxxaff00300020aff/direct/01/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: