Snort mailing list archives
RE: Snot Newb Question
From: Bryan Irvine <bryan.irvine () kingcountyjournal com>
Date: Mon, 19 Apr 2004 10:45:25 -0700
ps This is contingent on whether you compiled "snot" :-) with db support of course. On Mon, 2004-04-19 at 09:57, Bryan Irvine wrote:
this part: ###BEGIN PASTE### # database: log to a variety of databases # --------------------------------------- # See the README.database file for more information about configuring # and using this plugin. # # output database: log, mysql, user=snort password=secret dbname=snort host=localhost # output database: alert, postgresql, user=snort dbname=snort # output database: log, unixodbc, user=snort dbname=snort # output database: log, mssql, dbname=snort user=snort password=test ###END PASTE### You havn't set snort to log to a database. uncomment the appropriate line (hint: probably the first line) and modify to match your DB. -Bryan On Mon, 2004-04-19 at 09:52, Shaun Gray wrote:I'm not sure which line is the DB one so I have attached the entire file. Opening it via IE works. -----Original Message----- From: Bryan Irvine [mailto:bryan.irvine () kingcountyjournal com] Sent: Monday, April 19, 2004 12:07 PM To: Shaun Gray Cc: snort-users () lists sourceforge net Subject: Re: [Snort-users] Snot Newb Question could you post the database line of your snort.conf? --Bryan On Mon, 2004-04-19 at 08:24, Shaun Gray wrote:Stats and alerts are showing up when I run "snort -c /etc/snort/snort.conf". But when I look at ACID no activity shows up. I have a feeling this is something very simple but, I can't put my finger on it. Can anyone lend some advice on this issue? Thanks, Shaun Gray Network Engineer Medford Township Board of Education------------------------------------------------------- This SF.Net email is sponsored by: IBM Linux Tutorials Free Linux tutorial presented by Daniel Robbins, President and CEO of GenToo technologies. Learn everything from fundamentals to system administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
------------------------------------------------------- This SF.Net email is sponsored by: IBM Linux Tutorials Free Linux tutorial presented by Daniel Robbins, President and CEO of GenToo technologies. Learn everything from fundamentals to system administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Snot Newb Question Shaun Gray (Apr 19)
- Re: Snot Newb Question Bryan Irvine (Apr 19)
- <Possible follow-ups>
- RE: Snot Newb Question Shaun Gray (Apr 19)
- RE: Snot Newb Question Bryan Irvine (Apr 19)
- RE: Snot Newb Question Bryan Irvine (Apr 19)
- RE: Snot Newb Question Bryan Irvine (Apr 19)
- RE: Snot Newb Question Shaun Gray (Apr 19)
- RE: Snot Newb Question Bryan Irvine (Apr 19)
- RE: Snot Newb Question Mark Fagan (Apr 19)
- RE: Snot Newb Question Harper, Patrick (Apr 19)
- RE: Snot Newb Question Shaun Gray (Apr 19)
- RE: Snot Newb Question Randy Walinga (Apr 19)
- RE: Snot Newb Question Harper, Patrick (Apr 19)
- RE: Snot Newb Question Harper, Patrick (Apr 19)