Snort mailing list archives

Re: adding IDMEF output logging to snort-2.9.5


From: Sandro Poppi <spoppi () gmx net>
Date: Fri, 07 Feb 2014 18:18:51 +0100

Yasin,
sorry to say this but the Snort-IDMEF plugin development has been
stopped long ago because there was only a small amount of users.

Regards,
Sandro

Am 04.02.2014 13:00, schrieb Yasin:
I want to get logs in IDMEF format in snort-2.9.5So, i tried to use IDMEF-plugin written by Poppi , but this plugin 
is developed for snort-2.8.3.2 and I had to modify it due to use in snort-2.9.5I saw that this plugin suffers too 
many memory leaks,I have some questions:1. is this IDMEF- plugin the only way to have logs in IDMEF format?2. have 
you ever heard that IDMEF-plugin was updated for snort-2.9.5?3. does snort itself support IDMEF output logs?Many 
thanks in advance.Yasin.



------------------------------------------------------------------------------
Managing the Performance of Cloud-Based Applications
Take advantage of what the Cloud has to offer - Avoid Common Pitfalls.
Read the Whitepaper.
http://pubads.g.doubleclick.net/gampad/clk?id=121051231&iu=/4140/ostg.clktrk



_______________________________________________
Snort-devel mailing list
Snort-devel () lists sourceforge net
https://lists.sourceforge.net/lists/listinfo/snort-devel
Archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel

Please visit http://blog.snort.org for the latest news about Snort!


------------------------------------------------------------------------------
Managing the Performance of Cloud-Based Applications
Take advantage of what the Cloud has to offer - Avoid Common Pitfalls.
Read the Whitepaper.
http://pubads.g.doubleclick.net/gampad/clk?id=121051231&iu=/4140/ostg.clktrk
_______________________________________________
Snort-devel mailing list
Snort-devel () lists sourceforge net
https://lists.sourceforge.net/lists/listinfo/snort-devel
Archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel

Please visit http://blog.snort.org for the latest news about Snort!


Current thread: