Snort mailing list archives

Re: Unified Logging - BASE - Portscans


From: "Lay, James" <james.lay () wincofoods com>
Date: Mon, 25 Jul 2011 13:29:05 -0600

-----Original Message-----
From: Michael Steele [mailto:michaels () winsnort com]
Sent: Friday, July 22, 2011 9:13 PM
To: snort-users () lists sourceforge net
Subject: [Snort-users] Unified Logging - BASE - Portscans

I noticed that moving from output database to unified logging that
portscans
are no longer displayed in the BASE console.

Is there a solution to get this feature back to working in BASE?

Kindest regards,
Michael...

Michael, FWIW I tried in vain to get this to fly at home...I have the
portscan.log file being created as well as pointing to the right spot in
base_conf.php, but nothing shows up.  I suspect it's a difference in the
file format from the time BASE was made.  I'm sure an enterprising soul
could make the mods to the php files, but that wouldn't be me ;)  For
now I do without portscan info...BASE gives me what I need without.

James

------------------------------------------------------------------------------
Storage Efficiency Calculator
This modeling tool is based on patent-pending intellectual property that
has been used successfully in hundreds of IBM storage optimization engage-
ments, worldwide.  Store less, Store more with what you own, Move data to 
the right place. Try It Now! http://www.accelacomm.com/jaw/sfnl/114/51427378/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Please see http://www.snort.org/docs for documentation


Current thread: