Snort mailing list archives

Updating two snort directories with oinkmaster v1.2?


From: Rich Adamson <radamson () routers com>
Date: Fri, 29 Apr 2005 08:13:02 -0600


I'm running two snort processes on a Win32 box, each monitoring
different lan segments via two nic cards. The two snort processes
use different rules (eg, /rules1 & /rules2), log to different
directories (eg, /log1 & log2), have individual snort config files
(eg, snort1.conf & snort2.conf). Both segments are rather low
volume traffic and both are working just fine.

Looking for a realistic way to use oinkmaster v1.2 to update the
rules in both /rules1 and /rules two directories. Each directory
is obviously using rules tailored to each segment.

The current oinkmaster config updates the rules in one directory
via a win32 bat file (which kicks off oinkmaster.pl and create-sidmap.pl.

Is there a way to tell oinkmaster to update both /rules1 and /rules2
from within a single oinkmaster.conf, or must I create two win32 bat
files to do this?

(Trying to keep from having to download bleeding, snapshot and current
'twice'.)

Rich




-------------------------------------------------------
SF.Net email is sponsored by: Tell us your software development plans!
Take this survey and enter to win a one-year sub to SourceForge.net
Plus IDC's 2005 look-ahead and a copy of this survey
Click here to start!  http://www.idcswdc.com/cgi-bin/survey?id=105hix
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: