Snort mailing list archives
Re: Log vs Alert
From: "Dusty Hall" <halljer () auburn edu>
Date: Thu, 26 Jun 2003 15:06:56 -0500
John, Take a look at Snort's switches.... I think "snort -N ...." might help you out. -Dusty
"John Deagan" <johndeaganaka () hotmail com> 6/26/2003 1:49:20 PM >>>
How about this? I want to write alerts to the database but nothing at all in text. output database: alert, mysql, user= password= dbname= host= output log_null This will make it so I dont have to worry about that damn /var/log/snort/alert file. But this output database: log, mysql, user= password= dbname= host= output log_null Doesnt seem to work, /var/log/snort/alert still appears and gets big and slows down snort. Why does this work for output database: alert but not database: log? <<< John >>> _________________________________________________________________ Add photos to your messages with MSN 8. Get 2 months FREE*. http://join.msn.com/?page=features/featuredemail ------------------------------------------------------- This SF.Net email is sponsored by: INetU Attention Web Developers & Consultants: Become An INetU Hosting Partner. Refer Dedicated Servers. We Manage Them. You Get 10% Monthly Commission! INetU Dedicated Managed Hosting http://www.inetu.net/partner/index.php _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users ------------------------------------------------------- This SF.Net email is sponsored by: INetU Attention Web Developers & Consultants: Become An INetU Hosting Partner. Refer Dedicated Servers. We Manage Them. You Get 10% Monthly Commission! INetU Dedicated Managed Hosting http://www.inetu.net/partner/index.php _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Log vs Alert Matt Geiger (Jun 26)
- Re: Log vs Alert Erek Adams (Jun 26)
- Re: Log vs Alert list (Jun 26)
- <Possible follow-ups>
- Re: Log vs Alert Dusty Hall (Jun 26)
- Re: Log vs Alert John Deagan (Jun 26)
- RE: Re: Log vs Alert SRH-Lists (Jun 26)
- Re: Log vs Alert Dusty Hall (Jun 26)
- RE: Re: Log vs Alert John Deagan (Jun 26)
- RE: Re: Log vs Alert John Deagan (Jun 26)
- Re: Log vs Alert Erek Adams (Jun 26)