Snort mailing list archives

barnyard2 beta supports all Snort output plugins, but one.


From: "firnsy" <firnsy () securixlive com>
Date: Sat, 2 May 2009 18:00:46 +0930

G'day All,

 

We've just released a beta of barnyard2-1.5 which should cover a lot more
setups than previously possible.

 

What does that mean? Well given the large amount of refactoring that has
occurred in the spooler it is now MUCH easier to maintain and convert Snort
output plugins to work with barnyard2. Now all snort plugins but one
(alert_sf_socket) are integrated. 

 

The new plugins are: 

    1. spo_alert_arrubaaction

    2. spo_alert_full

    3. spo_alert_prelude

    4. spo_alert_unixsock

    5. spo_csv

    6. spo_log_ascii

    7. spo_log_null

    8. spo_log_tcpdump

 

Not all plugins have been tested as we don't have enough test environments
to give them a good soaking. All feedback (good or bad) is welcome :)

 

- firnsy

 

 

------------------------------------------------------------------------------
Register Now & Save for Velocity, the Web Performance & Operations 
Conference from O'Reilly Media. Velocity features a full day of 
expert-led, hands-on workshops and two days of sessions from industry 
leaders in dedicated Performance & Operations tracks. Use code vel09scf 
and Save an extra 15% before 5/3. http://p.sf.net/sfu/velocityconf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Current thread: