OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: [Snort-users] Snot Newb Question

From: Bryan Irvine (bryan.irvinekingcountyjournal.com)
Date: Mon Apr 19 2004 - 12:45:25 CDT


ps This is contingent on whether you compiled "snot" :-) with db
support of course.
  

On Mon, 2004-04-19 at 09:57, Bryan Irvine wrote:
> this part:
> ###BEGIN PASTE###
> # database: log to a variety of databases
> # ---------------------------------------
> # See the README.database file for more information about configuring
> # and using this plugin.
> #
> # output database: log, mysql, user=snort password=secret dbname=snort
> host=localhost
> # output database: alert, postgresql, user=snort dbname=snort
> # output database: log, unixodbc, user=snort dbname=snort
> # output database: log, mssql, dbname=snort user=snort password=test
> ###END PASTE###
>
> You havn't set snort to log to a database.
>
> uncomment the appropriate line (hint: probably the first line) and
> modify to match your DB.
>
> -Bryan
>
> On Mon, 2004-04-19 at 09:52, Shaun Gray wrote:
> > I'm not sure which line is the DB one so I have attached the entire
> > file. Opening it via IE works.
> >
> > -----Original Message-----
> > From: Bryan Irvine [mailto:bryan.irvinekingcountyjournal.com]
> > Sent: Monday, April 19, 2004 12:07 PM
> > To: Shaun Gray
> > Cc: snort-userslists.sourceforge.net
> > Subject: Re: [Snort-users] Snot Newb Question
> >
> > could you post the database line of your snort.conf?
> >
> > --Bryan
> >
> > On Mon, 2004-04-19 at 08:24, Shaun Gray wrote:
> > > Stats and alerts are showing up when I run "snort -c
> > > /etc/snort/snort.conf". But when I look at ACID no activity shows
> > > up. I have a feeling this is something very simple but, I can't put
> > > my finger on it. Can anyone lend some advice on this issue?
> > >
> > >
> > >
> > > Thanks,
> > >
> > >
> > >
> > > Shaun Gray
> > >
> > > Network Engineer
> > >
> > > Medford Township Board of Education
> > >
> > >
> > >
> > >
> >
>
>
>
> -------------------------------------------------------
> This SF.Net email is sponsored by: IBM Linux Tutorials
> Free Linux tutorial presented by Daniel Robbins, President and CEO of
> GenToo technologies. Learn everything from fundamentals to system
> administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click
> _______________________________________________
> Snort-users mailing list
> Snort-userslists.sourceforge.net
> Go to this URL to change user options or unsubscribe:
> https://lists.sourceforge.net/lists/listinfo/snort-users
> Snort-users list archive:
> http://www.geocrawler.com/redir-sf.php3?list=snort-users

-------------------------------------------------------
This SF.Net email is sponsored by: IBM Linux Tutorials
Free Linux tutorial presented by Daniel Robbins, President and CEO of
GenToo technologies. Learn everything from fundamentals to system
administration.http://ads.osdn.com/?ad_id=1470&alloc_id=3638&op=click
_______________________________________________
Snort-users mailing list
Snort-userslists.sourceforge.net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users