Snort mailing list archives

Re: Log problems


From: waldo kitty <wkitty42 () windstream net>
Date: Tue, 27 Nov 2012 12:08:25 -0500

On 11/26/2012 13:10, honeybadger () q com wrote:
I have been trying to figure out log problems....

Since then you all are saying that BY2 was a red herring I am trying to find
what is the problem in the snort.config file with no success.

It looks like snort is starting ok, pulled pork is checking rules and it says it
is running.

But no output in /var/log.

my understanding is that by default, the snort output logs are in the directory 
/var/log/snort... does this directory exist and have the necessary permissions 
for snort to write the files there?

or maybe you have altered the output directory in your config to point directory 
/var/log and permissions are not allowing it there?

what do your output options look like in your snort.conf?


------------------------------------------------------------------------------
Monitor your physical, virtual and cloud infrastructure from a single
web console. Get in-depth insight into apps, servers, databases, vmware,
SAP, cloud infrastructure, etc. Download 30-day Free Trial.
Pricing starts from $795 for 25 servers or applications!
http://p.sf.net/sfu/zoho_dev2dev_nov
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: