Snort mailing list archives

Fw: Problem of log in Mysql database with the Dynamic Preprocessor Example


From: Joel Esler <jesler () sourcefire com>
Date: Wed, 30 Mar 2011 14:18:27 -0400

Thomas-

You accidentally sent this to the owners of snort-devel instead of the snort-devel list itself.

Joel

-- 
Joel Esler
http://blog.snort.org | http://vrt-blog.snort.org
Twitter: http://twitter.com/snort

Forwarded message: 
From: Thomas LESTRIEZ <thomas.lestriez () edf fr>
To: snort-devel-owner () lists sourceforge net
Date: Wednesday, March 30, 2011 12:27:50 PM
Subject: Problem of log in Mysql database with the Dynamic Preprocessor Example


Hello, 

I can log in database thanks to classic rule like my test.rules which alert when the port 200 is used in the network. 
So my Mysql database works and my snort.conf and barnyard2.conf seems to be well configured. 

I installed and compiled the Dynamic Preprocessor Example of Snort. It works well, and I can see log in the syslog 
file when the Dynamic Preprocessor Example matches the port I configured in snorf.conf (11123). 

My problem is: Only the dynamic preprocessor example doesn't log in Mysql database. The example use the 
"_dpd.addAlert(.......); " function, but it seems it doesn't work for me... 

Could you help me please?

 Regards,
Thomas LESTRIEZ
 Apprenti Ingénieur
 EDF - R&D
 SINETICS
 1, avenue du Général de Gaulle
 BP 408
 92141 Clamart Cedex

thomas.lestriez () edf fr 
Tél. : 0147653811 

Un geste simple pour l'environnement, n'imprimez ce message que si vous en avez l'utilité.







 Ce message et toutes les pièces jointes (ci-après le 'Message') sont établis à l'intention exclusive des 
destinataires et les informations qui y figurent sont strictement confidentielles. Toute utilisation de ce Message 
non conforme à sa destination, toute diffusion ou toute publication totale ou partielle, est interdite sauf 
autorisation expresse.

 Si vous n'êtes pas le destinataire de ce Message, il vous est interdit de le copier, de le faire suivre, de le 
divulguer ou d'en utiliser tout ou partie. Si vous avez reçu ce Message par erreur, merci de le supprimer de votre 
système, ainsi que toutes ses copies, et de n'en garder aucune trace sur quelque support que ce soit. Nous vous 
remercions également d'en avertir immédiatement l'expéditeur par retour du message.

 Il est impossible de garantir que les communications par messagerie électronique arrivent en temps utile, sont 
sécurisées ou dénuées de toute erreur ou virus.
 ____________________________________________________

 This message and any attachments (the 'Message') are intended solely for the addressees. The information contained 
in this Message is confidential. Any use of information contained in this Message not in accord with its purpose, any 
dissemination or disclosure, either whole or partial, is prohibited except formal approval.

 If you are not the addressee, you may not copy, forward, disclose or use any part of it. If you have received this 
message in error, please delete it and all copies from your system and notify the sender immediately by return 
message.

 E-mail communication cannot be guaranteed to be timely secure, error or virus-free. 

------------------------------------------------------------------------------
Create and publish websites with WebMatrix
Use the most popular FREE web apps or write code yourself; 
WebMatrix provides all the features you need to develop and 
publish your website. http://p.sf.net/sfu/ms-webmatrix-sf
_______________________________________________
Snort-devel mailing list
Snort-devel () lists sourceforge net
https://lists.sourceforge.net/lists/listinfo/snort-devel

Current thread: