Snort mailing list archives

Re: Verifying Snort rules are updating?


From: "Jefferson, Shawn" <Shawn.Jefferson () bcferries com>
Date: Thu, 26 Jun 2014 17:49:56 -0600

I used the timestamps of the single file...  (well, I keep the VRT, ET and so_rules in separate files, so timestamps of 
each of those.)

From: Jeff Meigs [mailto:jmeigs () sunwestecu com]
Sent: June 26, 2014 1:35 PM
To: snort-users () lists sourceforge net
Subject: [Snort-users] Verifying Snort rules are updating?

Hello everyone,

We use to pull the rules using our own script but now we switched to using pulled pork. It seems the way its set up now 
with pulled pork is it dumps everything into that single file.
How are some of you verifying snort is running every day?
We have a report that used to tell us the file dates so we knew it was being updated. Anyone have any other methods?

Thanks,
Jeffrey Meigs
Junior Programmer
SunWest ECU
jmeigs () sunwestecu com<mailto:jmeigs () sunwestecu com>

------------------------------------------------------------------------------
Open source business process management suite built on Java and Eclipse
Turn processes into business applications with Bonita BPM Community Edition
Quickly connect people, data, and systems into organized workflows
Winner of BOSSIE, CODIE, OW2 and Gartner awards
http://p.sf.net/sfu/Bonitasoft
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: