Snort mailing list archives

Re: TR: Sending alert in other port


From: Jose Maria Lopez <jkerouac () bgsec com>
Date: 04 Oct 2004 20:08:23 +0200

El lun, 04 de 10 de 2004 a las 05:25, Raffael Maio escribió:
 

Hi guys,

 

I wana know if there is a possibility to send the alert message to a
different port under linux (like the output plugin in windows). 

(I don’t want to send the alert message under a different port not the
syslog port (54) but my proper port like 5535.

Depending in your configuration it could be possible to use iptables
using the REDIRECT or DNAT feature to change the destination port from
54 to 5535. I don't know if this it's possible to do it in the same
machine you have the snort sensor, but surely you can try it.

-- 
Jose Maria Lopez Hernandez
Director Tecnico de bgSEC
jkerouac () bgsec com
bgSEC Seguridad y Consultoria de Sistemas Informaticos
http://www.bgsec.com
ESPAÑA

The only people for me are the mad ones -- the ones who are mad to live,
mad to talk, mad to be saved, desirous of everything at the same time,
the ones who never yawn or say a commonplace thing, but burn, burn, burn
like fabulous yellow Roman candles.
                -- Jack Kerouac, "On the Road"



-------------------------------------------------------
This SF.net email is sponsored by: IT Product Guide on ITManagersJournal
Use IT products in your business? Tell us what you think of them. Give us
Your Opinions, Get Free ThinkGeek Gift Certificates! Click to find out more
http://productguide.itmanagersjournal.com/guidepromo.tmpl
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: