Snort mailing list archives

Re: No data and alarm log


From: James Lay <jlay () slave-tothe-box net>
Date: Tue, 04 Jun 2013 16:43:51 -0600

On 2013-06-04 16:15, Xiaoxu Huang wrote:
Hi,

We have installed the snort(2.9.4.6) on CentOS 6.4. The test looks OK
as followings. But not get anything in the log files (snort.log and
alert). Thanks for help.

snort -d -A fast -l /var/log/snort -c /etc/snort/snort.conf -T

<snip>

Snort successfully validated the configuration!

Run this in the foreground for a while:

snort -A fast -l /var/log/snort -c /etc/snort/snort.conf

then control-c and post the output (looking for something that starts 
like the below):

Packet I/O Totals:
    Received:           52
    Analyzed:           52 (100.000%)
     Dropped:            0 (  0.000%)
    Filtered:            0 (  0.000%)
Outstanding:            0 (  0.000%)
    Injected:            0


James

------------------------------------------------------------------------------
How ServiceNow helps IT people transform IT departments:
1. A cloud service to automate IT design, transition and operations
2. Dashboards that offer high-level views of enterprise services
3. A single system of record for all IT processes
http://p.sf.net/sfu/servicenow-d2d-j
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: