Snort mailing list archives

Re: Snort/Barnyard2 performance with remote DB


From: Jason Haar <Jason_Haar () trimble com>
Date: Thu, 01 Mar 2012 13:03:25 +1300

On 01/03/12 12:52, turki wrote:
Jason,

You mean:
Snort -->Barnyard2 (tcpdump format) ----- Remote system------->
Barnyard2 (convert to u2 format)--> DB

probably more

Snort -->Barnyard2 (tcpdump format) --- Remote system---> (convert to u2
format [adding original sensor name back?]) -> Barnyard2 --> DB


-- 
Cheers

Jason Haar
Information Security Manager, Trimble Navigation Ltd.
Phone: +1 408 481 8171
PGP Fingerprint: 7A2E 0407 C9A6 CAF6 2B9F 8422 C063 5EBB FE1D 66D1


------------------------------------------------------------------------------
Virtualization & Cloud Management Using Capacity Planning
Cloud computing makes use of virtualization - but cloud computing 
also focuses on allowing computing to be delivered as a service.
http://www.accelacomm.com/jaw/sfnl/114/51521223/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: