Snort mailing list archives

read logs snort with snortsnarf


From: deny1 <deny1 () free fr>
Date: Wed, 13 Oct 2004 10:00:59 +0200

hello

i use snort to put my logs in the file /var/log/snort
/usr/local/snort-2.1.3/src/snort -c /etc/snort/snort.conf

and i find a file alert in /var/log/snort

so i want to read it with snortsnarf (acid is not working with my php version)

i try ./snortsnarf.pl  /var/log/snort
and i get in my root directory the rep : snfout.snort

fine

question: am i sure to grab all the intrusions in this file alert ?
is it the good way to read and see the intrusions with snort ?

thanks







-------------------------------------------------------
This SF.net email is sponsored by: IT Product Guide on ITManagersJournal
Use IT products in your business? Tell us what you think of them. Give us
Your Opinions, Get Free ThinkGeek Gift Certificates! Click to find out more
http://productguide.itmanagersjournal.com/guidepromo.tmpl
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: