Snort mailing list archives

Re: [Snort-devel] Barnyard2 - v2-1.10 is released


From: "Michael Steele" <michaels () winsnort com>
Date: Wed, 26 Sep 2012 10:29:59 -0400

BASE is not currently being developed, but has worked for a very long time
with no modifications (or very little). I'm not sure what it will take to
make BASE compliant with the new proposed database schemas that the
Barnyard2 team has announced, but any changes to the database schemas will
make BASE obsolete.

Right now BASE accepts  data from several databases. However, when
Sourcefire abandoned the output database hook in Snort, Snort users were
totally reliant on Banyard2 for database support, which went from several
database options, to 2 database options.

There was 20 months between stable releases of Barnyard2, so I'm pretty sure
it's going to be awhile before it's implemented. I think releasing this
information at this time is causing a lot of confusion.

Hopefully the Barnyard2 team will show a little compassion for the users of
BASE and update BASE to be compliant with their new database schema. BASE is
the only console out there (that I know of) that is cross platform
compatible.
 
Kindest regards,
Michael...

-----Original Message-----
From: Jefferson, Shawn [mailto:Shawn.Jefferson () bcferries com] 
Sent: Tuesday, September 25, 2012 4:45 PM
To: firnsy; snort-devel () lists sourceforge net;
snort-users () lists sourceforge net
Subject: Re: [Snort-devel] [Snort-users] Barnyard2 - v2-1.10 is released

Does anyone know if this new database schema is compatible with BASE 1.45?

-----Original Message-----
From: firnsy [mailto:firnsy () securixlive com]
Sent: Tuesday, September 25, 2012 1:54 AM
To: snort-devel () lists sourceforge net; snort-users () lists sourceforge net
Subject: [Snort-users] Barnyard2 - v2-1.10 is released

<snip>

The next release of barnyard2 will come with new database output that only
support the new schema, native IPv6 support and FULL unified2 support for
all output plugin.




----------------------------------------------------------------------------
--
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and threat
landscape has changed and how IT managers can respond. Discussions will
include endpoint security, mobile security and the latest in malware
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
Snort-devel mailing list
Snort-devel () lists sourceforge net
https://lists.sourceforge.net/lists/listinfo/snort-devel

Please visit http://blog.snort.org for the latest news about Snort!



------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and 
threat landscape has changed and how IT managers can respond. Discussions 
will include endpoint security, mobile security and the latest in malware 
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: