Snort mailing list archives

snort and barnyard2


From: amin Salehi <seyedamin_salehi () yahoo com>
Date: Mon, 19 Nov 2012 23:31:15 -0800 (PST)

hi.
i config snort with unified2 output.(output unified2: filename merged.log, limit 128, nostamp, mpls_event_types, 
vlan_event_types)
.when i run "barnyard2 -c /etc/snort/barnyard2.conf -o merged.log" everything is ok.the file snort.log.timestamp is 
created and events log in syslog.but when i run barnyard2 in continual mode with following command the snort.log file 
is created but it is empty and i see on the screen that barnyard2 wait for new event.
barnyard2 -c /etc/snort/barnyard2.conf -d /var/log/snort -f merged.log
what is the problem?
------------------------------------------------------------------------------
Monitor your physical, virtual and cloud infrastructure from a single
web console. Get in-depth insight into apps, servers, databases, vmware,
SAP, cloud infrastructure, etc. Download 30-day Free Trial.
Pricing starts from $795 for 25 servers or applications!
http://p.sf.net/sfu/zoho_dev2dev_nov
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: