Snort mailing list archives

Re: Snort App Logs (not alerts)


From: Y M <snort () outlook com>
Date: Thu, 16 Oct 2014 19:12:22 +0300

Ubuntu's go to /var/log/syslog when default :)

YM

Sent from Mobile
________________________________
From: waldo kitty<mailto:wkitty42 () windstream net>
Sent: ‎10/‎16/‎2014 7:05 PM
To: snort-users () lists sourceforge net<mailto:snort-users () lists sourceforge net>
Subject: Re: [Snort-users] Snort App Logs (not alerts)

On 10/16/2014 11:11 AM, Kurzawa, Kevin wrote:
That switch seems to be for when /not/ running daemon mode. But I am.
Although this implies that console messages are already sent to syslog when
running in daemon mode. But I'm not seeing this. Using RHEL 6.6.

your system's syslog configuration might be putting these into another log
file... one some of our systems, these entries are written to our
/var/log/messages file but on our ubuntu systems with their default syslog
configurations, these entries are written to another log file that i can't
recall off hand... we had to hunt and dig to find them when we ran into this...

--
  NOTE: No off-list assistance is given without prior approval.
        Please *keep mailing list traffic on the list* unless
        private contact is specifically requested and granted.

------------------------------------------------------------------------------
Comprehensive Server Monitoring with Site24x7.
Monitor 10 servers for $9/Month.
Get alerted through email, SMS, voice calls or mobile push notifications.
Take corrective actions from your mobile device.
http://p.sf.net/sfu/Zoho
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!
------------------------------------------------------------------------------
Comprehensive Server Monitoring with Site24x7.
Monitor 10 servers for $9/Month.
Get alerted through email, SMS, voice calls or mobile push notifications.
Take corrective actions from your mobile device.
http://p.sf.net/sfu/Zoho
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: