Snort mailing list archives

SNMP Output question.


From: Vjay LaRosa <vjayl () emc com>
Date: Tue, 04 Sep 2001 17:49:41 -0400

Hello,

I have a quick question. I am a newbie to snort. I have only had it
running for a few days.
I am integrating snort in to my SNMP management framework (Netcool
Omnibus). At this
point every alert is being sent the management station. I am only
interested in sending a few
alerts in particular. (.ida attempts in particular). I am struggling to
figure out how to accomplish this. Any help would be appreciated.
Thanks!

vjl

P.S. These are my output lines in my rules file.

output trap_snmp: alert, 10, trap -v 2c -p 162 X.X.X.X public
output trap_snmp: alert, 8, trap -v 2c -p 162  X.X.X.X public
output trap_snmp: alert, 3, trap -v 2c -p 162  X.X.X.X public



--
 V.Jay LaRosa                           EMC Corporation
 Systems Administrator                  171 South Street
 (508)435-1000 ext 14957                Hopkinton, MA 01748
 (508)497-8082 fax                      www.emc.com



Current thread: