Snort mailing list archives

RE: Snort-Swatch


From: "Keaton, Lindamaria" <LKeaton () unionsafe com>
Date: Tue, 23 Sep 2003 11:26:33 -0700

/usr/bin/local/snort -c /etc/snort/snort.conf 

-----Original Message-----
From: jon baer
To: snort-users () lists sourceforge net
Sent: 9/19/03 1:16 PM
Subject: Re: [Snort-users] Snort-Swatch

what is the command line you are using to start up snort?
 
- jon

----- Original Message ----- 
From: Keaton,  <mailto:LKeaton () unionsafe com> Lindamaria 
To: snort-users () lists sourceforge net
<mailto:snort-users () lists sourceforge net>  
Sent: Friday, September 19, 2003 6:31 PM
Subject: [Snort-users] Snort-Swatch


Is anyone using swatch to email alerts? 

If so, can someone tell me how to configure swatch to send entire
content of an alert. Right now I'm getting alerts send but this is all
I'm getting in the body of the email.

TCP TTL:64 TOS:0x0 ID:33690 IpLen:20 DgmLen:1500 DF. 

I would like to see source, destination, time, and what the actually
alert is. Anyone have any ideas? 

Lindamaria E. Keaton 
Security Administrator 
Union Safe Deposit Bank 
209.946.5173 




-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: