Snort mailing list archives

snort installation and usage


From: Adrian Sevcenco <Adrian.Sevcenco () spacescience ro>
Date: Sat, 18 Jan 2014 10:59:48 +0200

Hi! I am new to snort and i try to install it.
At this moment is not clear to me what exactly i am supposed to do, an
i am referring to the database option that it seems that it is removed.
All howtos on the net have examples with snort compiled with the option
--with-mysql and this seems to be removed.

So, at this moment my understanding is that
snort writes output to a binary unified2 file
->
barnyard2 process as input that file at regular time frames or
continuous and outputs the data in a chosen database (if i want
everything in database what should i choose: log or alert?)
->
the database in question is input for BASE, which also have the sql
script for database initialization in sql director...

Is this ok? do i missed something? does somebody have some example
configuration for barnyard and base? (and some words of wisdom regarding
the configuration of database (i use postgres))

Thank you!
Adrian

------------------------------------------------------------------------------
CenturyLink Cloud: The Leader in Enterprise Cloud Services.
Learn Why More Businesses Are Choosing CenturyLink Cloud For
Critical Workloads, Development Environments & Everything In Between.
Get a Quote or Start a Free Trial Today. 
http://pubads.g.doubleclick.net/gampad/clk?id=119420431&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: