Snort mailing list archives

Re: [Snort-users] Is ACID related to the snort's mysql support?‏


From: Jeremy Hoel <jthoel () gmail com>
Date: Fri, 6 Mar 2015 11:00:22 -0700

You get the logs into a mysql DB via barnyard2.  You can still use
acid/base/snorby/etc.. but you have to get the logs from alert2 to mysql,
and that's what barnyard or pigsty, but the guys who did snorby.



On Fri, Mar 6, 2015 at 1:30 AM, Archer Yang <evadyoungxr () gmail com> wrote:

Hello!


Recently I just knew that snort does not support mysql anymore from "
http://webcache.googleusercontent.com/search?q=cache:K7068wW86vUJ:blog.snort.org/2012/07/database-output-is-dead-rip.html+&cd=2&hl=en&ct=clnk&gl=us";.
Otherwise, I should use Barnyard instead.

But I found I could not use ACID. It doesn't show anything.(My phpmyadmin
works well.) Snort and Snort-archive databases are empty. So, is ACID
related to the snort's mysql support very much?

And I found documents about ACID are too old, especially now that snort
does not support mysql since 2.9. If there are any recent years' related
articles, let me know please.

Thanks for your time!

Archer Yang


------------------------------------------------------------------------------
Dive into the World of Parallel Programming The Go Parallel Website,
sponsored
by Intel and developed in partnership with Slashdot Media, is your hub for
all
things parallel software development, from weekly thought leadership blogs
to
news, videos, case studies, tutorials and more. Take a look and join the
conversation now. http://goparallel.sourceforge.net/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest
Snort news!

------------------------------------------------------------------------------
Dive into the World of Parallel Programming The Go Parallel Website, sponsored
by Intel and developed in partnership with Slashdot Media, is your hub for all
things parallel software development, from weekly thought leadership blogs to
news, videos, case studies, tutorials and more. Take a look and join the 
conversation now. http://goparallel.sourceforge.net/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: