Snort mailing list archives
no alerts logged
From: Mat Harris <mat.harris () genestate com>
Date: Thu, 15 Jan 2004 14:54:13 +0000
Hi, I have set up snort for the second time now using the pdf redhat howto. The first setup worked perfectly with acid and i loved it, but that machine died and so I am trying to install the replacement. I have followed the instruction (as far as I can see) to the letter, the same as last time, but on the new install, there is nothing being logged. Everything appears to be working perfectly, but nothing is sent to the mysql db except on one test portscan with nmap it logged 2 alerts for that. I am not very familiar with snort yet so I don't know what to provide to debug it and the keywords are too vague for a google/archive search. Please let me know what info to provide for debugging. I am running Redhat 7.3 (fully updated) with snort Version 2.0.5 (Build 98). Thanks in advance -- ----------------------------------------- + Mat Harrison | mat.harris () genestate com + | England, UK | matth () 3d-computers co uk | |--------------+--------------------------| + http://www.genestate.com + ----------------------------------------
Attachment:
_bin
Description:
Current thread:
- no alerts logged Mat Harris (Jan 15)
- <Possible follow-ups>
- Re: no alerts logged M. Morgan (Jan 15)
- Re: no alerts logged Mat Harris (Jan 15)
- portscan but no rules - Was: Re: no alerts logged Mat Harris (Jan 16)
- Re: no alerts logged Mat Harris (Jan 15)
- RE: no alerts logged Michael Chapman (Jan 15)
- RE: no alerts logged Michael Chapman (Jan 16)
- RE: no alerts logged Michael Chapman (Jan 16)