Snort mailing list archives

RE: what does this command do?


From: "L. Christopher Luther" <CLuther () Xybernaut com>
Date: Mon, 28 Apr 2003 08:34:51 -0400

In summary:  

  -v : Print out TCP/IP (TCP/UDP/ICMP) headers to the console (i.e., sniffer
mode) -- nothing else  
  -d : Display application (i.e., packet) data too  
  -c : Enable NIDS mode using options specified in "full path"/snort.conf  

It's the '-c' command tells Snort to use the configuration options specified
in snort.conf, including any .rules referenced in the file.  

IMHO, '-v' really slows things down (i.e., output to the console).  You may
want to try the '-l /somepath/logs' option.


Cheers!  


-----Original Message-----
From: stormshadow [mailto:storm-shadow () comcast net]
Sent: Sunday, April 27, 2003 8:29 PM
To: snort-users () lists sourceforge net
Subject: [Snort-users] what does this command do?


snort -dvc /root/snort_dir_here/etc/snort.conf


also, how can I utilize the rules snort comes bundled with in the snort 
directory? What command should I give?

thanks guys
ss

ps:
sorry i mailed this to snort rules as well. I should of sent it here in 
the first place.





-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: