Snort mailing list archives

Re: Unified log - how binary are they?


From: "Andrew R. Baker" <andrewb () snort org>
Date: Sat, 13 Mar 2004 15:44:44 -0500

Sigurd Urdahl wrote:

Can one use a 64 bit Sparc with Snort dumping unified logs and expect
to be able to feed those logs to an 32 bit Intel-based Barnyard/
Snort?

If you are asking if you can copy unified files from a Sparc 64 based system to an ia32 based system and process them there, then no, you cannot do that currently with Barnyard. The unified files are written using host byte ordering. So they need to be processed on a system that has the same endianness as the system that created them.

-A



-------------------------------------------------------
This SF.Net email is sponsored by: IBM Linux Tutorials
Free Linux tutorial presented by Daniel Robbins, President and CEO of
GenToo technologies. Learn everything from fundamentals to system
administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: