Snort mailing list archives

Looking for substantive DB docs


From: "Don Murdoch" <djmurd () cox net>
Date: Mon, 2 Aug 2004 21:31:44 -0400


        Hi there.  Been tinkering w/ Acid a bit. I am looking for
substantive
        documentation on the Snort database format - without having to print
out
        and reverse engineer the opt_database.c program file.  

        Is there a current ERD for the database (Ver 1.06)?
        Ver 1.03 is freely availabe.

        Is there a data dictionary of table / field names anywhere?
        (I have looked at acidlab, and in the README.database file, and at
cert.org).

        Is there any discussion on how to read the database - how to put 
        together the relationships within the varions INSERT statements in
the code?

        Thanks much.
        

--------------------------------------
From the home outbox of ... 
Don Murdoch, CISSP
GCWN, GCUX, GCIA, GCIH,  MCSD, MCSE (NT/2K)
Today's Sun Tzu Quote: "To fight and conquer in all your battles is not
supreme excellence; supreme excellence consists in breaking the enemy's
resistance without fighting." -Sun Tzu 



-------------------------------------------------------
This SF.Net email is sponsored by OSTG. Have you noticed the changes on
Linux.com, ITManagersJournal and NewsForge in the past few weeks? Now,
one more big change to announce. We are now OSTG- Open Source Technology
Group. Come see the changes on the new OSTG site. www.ostg.com
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: