Snort mailing list archives
RE: help please
From: Erek Adams <erek () theadamsfamily net>
Date: Thu, 27 Sep 2001 08:07:47 -0700 (PDT)
On Thu, 27 Sep 2001, d'Ambly, Jeff wrote:
Ok sweet, that worked but now I can't use eth1 Snort received signal 2, exiting [root@snort conf]# snort -o -c -i eth1 ./snort.conf
Easily fixed. :) Start it with: snort -o -i eth1 -c ./snort.conf It's seeing the -c and expecting to find the next parameter as a config file. It sees "-i eth1 ./snort.conf" as the parameter. :) Actually, you don't even need the -c ./snort.conf, as snort will default to looking for ./snort.conf and /etc/snort.conf when it starts.
This is a 100mb interface that does not have an ip address, I want to do this because I have setup a spanning session on the switch, to mirror all traffic on vlan across this one port. Think of it like a hub, in a way.
Yeppers. That will work just fine. Glad to get ya up and running! ----- Erek Adams Nifty-Type-Guy TheAdamsFamily.Net _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- help please d'Ambly, Jeff (Sep 26)
- Re: help please Erek Adams (Sep 26)
- RE: help please John Berkers (Sep 26)
- <Possible follow-ups>
- RE: help please d'Ambly, Jeff (Sep 27)
- RE: help please Erek Adams (Sep 27)
- RE: help please d'Ambly, Jeff (Sep 27)
- RE: help please Erek Adams (Sep 27)
- Re: help please Erek Adams (Sep 26)