Snort mailing list archives

Re: ACID Email alerts


From: Lane LiaBraaten <lliabraa () isrparc org>
Date: Fri, 31 Oct 2003 17:25:13 +0000


On Friday 31 October 2003 09:12 pm, Schmehl, Paul L wrote:


Just curious ... I configured the acid_conf.php email section
but I do not get email alerts. Is there another component I
need to set up to get email to work? I can sent myself email



AFIK, Snort and ACID do not support real time email alerts.  If you are using 
Linux, swatch (Simple log WATCHer) will monitor your system log and send you 
an email as soon as snort (or any other regex you specify) writes to the 
system log.  I don't know if there is a similar approach for windows.



ACID does not send automated email alerts.  You have to send them
manually.  Once you've done a search or you've viewed a particular



Paul Schmehl (pauls () utdallas edu)



What good is a NIDS if it doesn't automatically alert you when it detects 
something?


LGL



-------------------------------------------------------
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?   SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: