Snort mailing list archives

[Csra-sug] Snort and Barnyard


From: Joel Esler <eslerj () gmail com>
Date: Fri, 29 Aug 2008 15:08:20 -0400


If you are using Patrick Harper's guides to set up IDS, I have noted one error:

In the init.d file for barnyard:
....
GEN_MAP = "/etc/snort/gen-msg.map"
....

BUT the calling string looks like this:
....
/usr/local/bin/$BASE -c $CONF -g $GEN-MAP -s $SID_MAP -d $LOG_DIR -f $LOG_FILE -w $WALDO_FILE $DAEMON
....

change $GEN-MAP to $GEN_MAP

Restart Barnyard.

If you follow the guide step-by-step, you are not instructed to edit this file, so it's easily over looked.

If one of the moderators wouldn't mind also posting this to the other Snort user groups.

Thanks.

G.

_______________________________________________
CSRA-SUG mailing list
CSRA-SUG () lists snort org
https://lists.snort.org/mailman/listinfo/csra-sug



--
Joel Esler
  http://blog.joelesler.nethttp://www.dearcupertino.com
[m]



-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Current thread: