Snort mailing list archives

Re: A size of log file is zero although there is an attack


From: waldo kitty <wkitty42 () windstream net>
Date: Fri, 26 Sep 2014 14:41:11 -0400

On 9/25/2014 11:31 PM, Jutichai Thongkrachai wrote:
To Sharif Uddin

I set a permission and user/group to all snort folders as Snort 2.9.6.x on
CentOS 6.x <https://www.snort.org/documents/4> on www.snort.org
<http://www.snort.org>


I run a command that you provide. I got this error:

/*[log]# snort -q -u snort -g snort -c /etc/snort/snort.conf -i enp2s0 –D
ERROR: Can't set DAQ BPF filter to '–D' (pcap_daq_set_filter: pcap_compile:
illegal token: –)!
Fatal Error, Quitting..*/

where did that trailing "-D" come from? it wasn't in the line suggested...

-- 
  NOTE: No off-list assistance is given without prior approval.
        Please *keep mailing list traffic on the list* unless
        private contact is specifically requested and granted.

------------------------------------------------------------------------------
Meet PCI DSS 3.0 Compliance Requirements with EventLog Analyzer
Achieve PCI DSS 3.0 Compliant Status with Out-of-the-box PCI DSS Reports
Are you Audit-Ready for PCI DSS 3.0 Compliance? Download White paper
Comply to PCI DSS 3.0 Requirement 10 and 11.5 with EventLog Analyzer
http://pubads.g.doubleclick.net/gampad/clk?id=154622311&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: