Snort mailing list archives
Re: How to determine that the Snort is ready to capture the traffic?
From: wkitty42 () windstream net
Date: Tue, 14 Jun 2016 08:52:10 -0400
On 06/14/2016 07:17 AM, Andrei_1980 wrote:
P.s. Now i use simple way - grep stdout until some text pattern. But it will be wonder, if Snort could announce readiness event.
it does... tail and grep the log... Jun 14 01:45:27 perseus snort[1864]: Checking PID path... Jun 14 01:45:27 perseus snort[1864]: PID path stat checked out ok, PID path set to /var/run/ Jun 14 01:45:27 perseus snort[1864]: Writing PID "1864" to file "/var/run//snort_ppp0.pid" Jun 14 01:45:27 perseus snort[1864]: Set gid to 101 Jun 14 01:45:27 perseus snort[1864]: Set uid to 101 Jun 14 01:45:27 perseus snort[1864]: Jun 14 01:45:27 perseus snort[1864]: --== Initialization Complete ==-- Jun 14 01:45:28 perseus snort[1864]: Commencing packet processing (pid=1864) -- NOTE: No off-list assistance is given without prior approval. *Please keep mailing list traffic on the list* unless private contact is specifically requested and granted. ------------------------------------------------------------------------------ What NetFlow Analyzer can do for you? Monitors network bandwidth and traffic patterns at an interface-level. Reveals which users, apps, and protocols are consuming the most bandwidth. Provides multi-vendor support for NetFlow, J-Flow, sFlow and other flows. Make informed decisions using capacity planning reports. https://ad.doubleclick.net/ddm/clk/305295220;132659582;e _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users Please visit http://blog.snort.org to stay current on all the latest Snort news!
Current thread:
- How to determine that the Snort is ready to capture the traffic? Andrei_1980 (Jun 14)
- Re: How to determine that the Snort is ready to capture the traffic? Balasubramaniam Natarajan (Jun 14)
- Re: How to determine that the Snort is ready to capture the traffic? wkitty42 (Jun 14)
- Re: How to determine that the Snort is ready to capture the traffic? Balasubramaniam Natarajan (Jun 14)
- Re: How to determine that the Snort is ready to capture the traffic? Andrei_1980 (Jun 14)
- Re: How to determine that the Snort is ready to capture the traffic? Joel Esler (jesler) (Jun 14)
- Re: How to determine that the Snort is ready to capture the traffic? Andrey Kiryukhin (Jun 15)