Snort mailing list archives

Capturing Packets on Demand


From: "Migus, Adam" <Adam_Migus () NAI com>
Date: Tue, 2 Oct 2001 13:35:55 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Folks,
I'm sure this question has probably been asked many times before but
a quick scan of the FAQ revealed nothing so I'll ask again.
What I want to do is this:
For a given rule when the rule is triggered I want to log in tcpdump
format that packet and each subsequent packet until the connection is
terminated.  If possible I'd also like it if each time the rule was
triggers it would log the binary data to separate logfiles so that
each file contained only one trace.  The second part is icing on the
cake and it not essential.

Thanks,
Adam

-----BEGIN PGP SIGNATURE-----
Version: PGP 6.5.1
Comment: Crypto Provided by Network Associates <http://www.nai.com>

iQA/AwUBO7oJChnuLsFhS6x5EQIqrACg9k8WUow6B787RJI64rT4nbGabEsAnRQz
b4v/XoI61k8vZI7mW4sM70K8
=PSV+
-----END PGP SIGNATURE-----

_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: