OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Eric Ferguson (eric.fergusonjaguartech.com)
Date: Tue Jul 02 2002 - 06:05:50 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    I have Snort 1.8.6 running on Red Hat 7.3 with ACID and MySQL. I start
    Snort with the -v option to verify that Snort is seeing traffic and all
    seems well. My only problem is that attacks (ones I generate myself)
    are only logged if directed at the Snort IP address. If I direct an
    attack to another machine on the same subnet, Snort does not identify
    the attack (yes I am running a hub and not a switch.:-)). Sounds like
    something simple to me, I am just not sure what it is.

     

    Thanks,

     

    Eric Ferguson - NNCSE

    4440 Embassy Drive

    Sykesville, Md. 21784

    phone: 410-876-0585

    cell: 443-677-6119

    email: eric.fergusonjaguartech.com

     

    -------------------------------------------------------
    This sf.net email is sponsored by:ThinkGeek
    Welcome to geek heaven.
    http://thinkgeek.com/sf
    _______________________________________________
    Snort-users mailing list
    Snort-userslists.sourceforge.net
    Go to this URL to change user options or unsubscribe:
    https://lists.sourceforge.net/lists/listinfo/snort-users
    Snort-users list archive:
    http://www.geocrawler.com/redir-sf.php3?list=snort-users