Snort mailing list archives
adding IDMEF output logging to snort-2.9.5
From: Yasin <yaassin () chmail ir>
Date: Tue, 4 Feb 2014 15:30:34 +0330 (IRST)
I want to get logs in IDMEF format in snort-2.9.5So, i tried to use IDMEF-plugin written by Poppi , but this plugin is developed for snort-2.8.3.2 and I had to modify it due to use in snort-2.9.5I saw that this plugin suffers too many memory leaks,I have some questions:1. is this IDMEF- plugin the only way to have logs in IDMEF format?2. have you ever heard that IDMEF-plugin was updated for snort-2.9.5?3. does snort itself support IDMEF output logs?Many thanks in advance.Yasin.
------------------------------------------------------------------------------ Managing the Performance of Cloud-Based Applications Take advantage of what the Cloud has to offer - Avoid Common Pitfalls. Read the Whitepaper. http://pubads.g.doubleclick.net/gampad/clk?id=121051231&iu=/4140/ostg.clktrk
_______________________________________________ Snort-devel mailing list Snort-devel () lists sourceforge net https://lists.sourceforge.net/lists/listinfo/snort-devel Archive: http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel Please visit http://blog.snort.org for the latest news about Snort!
Current thread:
- adding IDMEF output logging to snort-2.9.5 Yasin (Feb 07)
- Re: adding IDMEF output logging to snort-2.9.5 Sandro Poppi (Feb 07)
- <Possible follow-ups>
- adding IDMEF output logging to snort-2.9.5 Yasin (Feb 13)