Snort mailing list archives

Re: snort + aris


From: Ryan Russell <ryan () securityfocus com>
Date: Fri, 11 May 2001 12:46:51 -0600 (MDT)

Was the question regarding how to get Snort running, or how to get it to
feed to ARIS?

                        Ryan

On Fri, 11 May 2001, Ron 'The InSaNe One' Rosson wrote:

I am getting ready to reset up aris on my network but I am confused on
what my command line should be.

Here is my basic setup:

IDS system logging to a remote Database

Command line for snort is:
/usr/local/bin/snort -D -d -c /etc/snort.rules

Here is the output part of my  snort.rules file

output database: alert, mysql, user=nobody dbname=snort host=postal




_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
http://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: