Snort mailing list archives
Re: adding IDMEF output logging to snort-2.9.5
From: Sandro Poppi <spoppi () gmx net>
Date: Fri, 07 Feb 2014 18:18:51 +0100
Yasin, sorry to say this but the Snort-IDMEF plugin development has been stopped long ago because there was only a small amount of users. Regards, Sandro Am 04.02.2014 13:00, schrieb Yasin:
I want to get logs in IDMEF format in snort-2.9.5So, i tried to use IDMEF-plugin written by Poppi , but this plugin is developed for snort-2.8.3.2 and I had to modify it due to use in snort-2.9.5I saw that this plugin suffers too many memory leaks,I have some questions:1. is this IDMEF- plugin the only way to have logs in IDMEF format?2. have you ever heard that IDMEF-plugin was updated for snort-2.9.5?3. does snort itself support IDMEF output logs?Many thanks in advance.Yasin. ------------------------------------------------------------------------------ Managing the Performance of Cloud-Based Applications Take advantage of what the Cloud has to offer - Avoid Common Pitfalls. Read the Whitepaper. http://pubads.g.doubleclick.net/gampad/clk?id=121051231&iu=/4140/ostg.clktrk _______________________________________________ Snort-devel mailing list Snort-devel () lists sourceforge net https://lists.sourceforge.net/lists/listinfo/snort-devel Archive: http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel Please visit http://blog.snort.org for the latest news about Snort!
------------------------------------------------------------------------------ Managing the Performance of Cloud-Based Applications Take advantage of what the Cloud has to offer - Avoid Common Pitfalls. Read the Whitepaper. http://pubads.g.doubleclick.net/gampad/clk?id=121051231&iu=/4140/ostg.clktrk _______________________________________________ Snort-devel mailing list Snort-devel () lists sourceforge net https://lists.sourceforge.net/lists/listinfo/snort-devel Archive: http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel Please visit http://blog.snort.org for the latest news about Snort!
Current thread:
- adding IDMEF output logging to snort-2.9.5 Yasin (Feb 07)
- Re: adding IDMEF output logging to snort-2.9.5 Sandro Poppi (Feb 07)
- <Possible follow-ups>
- adding IDMEF output logging to snort-2.9.5 Yasin (Feb 13)