Snort mailing list archives
read logs snort with snortsnarf
From: deny1 <deny1 () free fr>
Date: Wed, 13 Oct 2004 10:00:59 +0200
hello i use snort to put my logs in the file /var/log/snort /usr/local/snort-2.1.3/src/snort -c /etc/snort/snort.conf and i find a file alert in /var/log/snortso i want to read it with snortsnarf (acid is not working with my php version)
i try ./snortsnarf.pl /var/log/snort and i get in my root directory the rep : snfout.snort fine question: am i sure to grab all the intrusions in this file alert ? is it the good way to read and see the intrusions with snort ? thanks ------------------------------------------------------- This SF.net email is sponsored by: IT Product Guide on ITManagersJournal Use IT products in your business? Tell us what you think of them. Give us Your Opinions, Get Free ThinkGeek Gift Certificates! Click to find out more http://productguide.itmanagersjournal.com/guidepromo.tmpl _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- read logs snort with snortsnarf deny1 (Oct 13)