Snort mailing list archives

Re: can't log to merged.log file in unified2 format in Version 2.9.9.0


From: Russ <rucombs () cisco com>
Date: Fri, 21 Apr 2017 09:09:27 -0400

What is in your conf on the preceding line?

On 4/21/17 6:26 AM, Berndt, Achim wrote:
Hello,

it works, if we put in the directive two times.

output unified2: filename merged.u2, limit 128
output unified2: filename merged.u2, limit 128

it seems, that the first line will be ignored.

Regards
Achim


------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


Current thread: