Snort mailing list archives

Re: Still trying to build this box


From: Jim Turner <JTurner () hilltopconsultants com>
Date: Tue, 12 Mar 2013 11:55:00 -0400

Hello Waldo Kitty,

I watched a youtube video where the guy was able to test his logging by pinging websites.

http://www.youtube.com/watch?v=7Pg_ZJV4cSY


Is this no longer an activity that can be logged?

I suspect that I have successfully installed Snort.  I would like to know if it is working before I deploy the box on a 
network.

Is there any way to verify that everything is working perfectly?



From: waldo kitty [mailto:wkitty42 () windstream net]
Sent: Tuesday, March 12, 2013 11:51 AM
To: snort-users () lists sourceforge net
Subject: Re: [Snort-users] Still trying to build this box

On 3/12/2013 09:03, Jim Turner wrote:
I have made progress since last night. Snort is now starting and not erroring on
the rules. I accomplished this by uninstalling and starting all over again. Now
I am just unable to log any of the data.

what are you expecting to log? snort will only log traffic that creates
alerts... regular/normal traffic should not create alerts... it only ran for 90
seconds...




------------------------------------------------------------------------------
Symantec Endpoint Protection 12 positioned as A LEADER in The Forrester
Wave(TM): Endpoint Security, Q1 2013 and "remains a good choice" in the
endpoint security space. For insight on selecting the right partner to
tackle endpoint security challenges, access the full report.
http://p.sf.net/sfu/symantec-dev2dev
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net<mailto:Snort-users () lists sourceforge net>
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

________________________________
------------------------------------------------------------------------------
Symantec Endpoint Protection 12 positioned as A LEADER in The Forrester  
Wave(TM): Endpoint Security, Q1 2013 and "remains a good choice" in the  
endpoint security space. For insight on selecting the right partner to 
tackle endpoint security challenges, access the full report. 
http://p.sf.net/sfu/symantec-dev2dev
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: