OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Snort-users] RE: Network Behaviour Anomoly Detection

From: sekure (sekuregmail.com)
Date: Wed Jul 14 2004 - 11:12:07 CDT


On Tue, 13 Jul 2004 14:55:38 -0400, Martin Roesch <roeschsourcefire.com> wrote:
> The binary format can be read by barnyard (file "snort-unified.stats")
> which would work great for a post-processed anomaly detector if you
> wanted near real-time performance.

Barnyard 0.2.0 had no idea what to do with the unified file. It
mentioned something about unknown input filter. Has anyone been able
to process a unified output from stream4 with barnyard? Care to share
your config?

-------------------------------------------------------
This SF.Net email sponsored by Black Hat Briefings & Training.
Attend Black Hat Briefings & Training, Las Vegas July 24-29 -
digital self defense, top technical experts, no vendor pitches,
unmatched networking opportunities. Visit www.blackhat.com
_______________________________________________
Snort-users mailing list
Snort-userslists.sourceforge.net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users