Snort mailing list archives
[Fwd: RE: Changing default syslog Facility:Priority for all alerts]
From: Mark Tunnell <mtunnell () livebridge com>
Date: Tue, 21 Feb 2006 11:58:17 -0800
Thanks for the responses. My problem turned out to be that I was trying to configure multiple alert_syslog statements to send to different syslog facilities and the later ones kept over-riding the previous ones. It appears only one syslog priority may be set. So, I'll go with one and do the parsing on the other end. Thanks, Mark ------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Do you grep through log files for problems? Stop! Download the new AJAX search engine that makes searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642 _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- [Fwd: RE: Changing default syslog Facility:Priority for all alerts] Mark Tunnell (Feb 21)