Snort mailing list archives

Re: Snort and MySQL


From: James Riden <j.riden () massey ac nz>
Date: Wed, 09 Feb 2005 15:25:23 +1300

sEc nErD <umkcguy1978 () yahoo com> writes:

ok below are the details of whtz up with my snort...it
is having all alerts in /var/log/snort/alert file

but just that nothing in mysql database.one thing
happened was mysql was not running ,then i started
mysqld from init.d  

since i started it aftre i was running snort..do i
need to stop and restart snort??so that it connects to
the database

if yes what would be the command for that!!

Would probably help:

/etc/init.d/snort restart

Then do a 'tail /var/log/daemon.log' to check it started OK.

output from /var/log/messages
Feb  8 14:49:48 localhost sshd(pam_unix)[3049]:
session opened for user root by (uid=0)
Feb  8 15:15:30 localhost mysqld: Starting MySQL: 
succeeded

Look in /var/log/daemon.log instead for the snort startup (it's a
Debian thing).

cheers,
 Jamie
-- 
James Riden / j.riden () massey ac nz / Systems Security Engineer
Information Technology Services, Massey University, NZ.
GPG public key available at: http://www.massey.ac.nz/~jriden/




-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: