Snort mailing list archives

Re: Run as user?


From: Alberto Gonzalez <albertg () wwjh net>
Date: Thu, 3 Apr 2003 01:03:03 -0500 (EST)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1




sorry, what I meant was to actually run snort without first su'ing to root.

is there any way to do this and have access to eth0?


search google, I believe there is a kernel module[1] out there that will 
allow a non-privileged user to set eth0 into promisc mode. as to 
/var/log/snort you will need to make the directory yourself. 

 Cheers,
 Alberto Gonzalez

[1] - sorry, i don't remember the name.... but i will check for ya.

- -- 
"Success comes to the person who does today, what you are thinking of doing tomorrow." 

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iD8DBQE+i86ca3vAB/3yp/IRAhZDAJ0cZBvxcbcrA7tNxSytuxijk0gg1ACfRLhb
+SoYqoeW4QTy63MdN7CLIto=
=hn8N
-----END PGP SIGNATURE-----



-------------------------------------------------------
This SF.net email is sponsored by: ValueWeb: 
Dedicated Hosting for just $79/mo with 500 GB of bandwidth! 
No other company gives more support or power for your dedicated server
http://click.atdmt.com/AFF/go/sdnxxaff00300020aff/direct/01/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: