Snort mailing list archives

Snort Red hat 7.2, ACID, MySQL.


From: Brian Ertel <bsertel () amherst edu>
Date: Tue, 30 Jul 2002 10:42:49 -0400



Presently we have the system up and running.  Now, it seems
that ACID displays the totality of what is contained in MySQL.
Is there a way to, lets say every 24 hours, dump the information
snorted in that past 24 hours into MySQL and have ACID only display
what is presently being snorted?  For example, if I activate Snort
on Monday morning at 8:30am, can I configure Snort or ACID or MySQL
to (on Tues. morning at say 8:15am) take that past 24 hours worth
of info store it away in MySQL so that ACID only displays what is
presently being Snorted, i.e. starting at 8:30 Tues morning? 

Any thoughts?

----------------------------------
Brian Ertel
Systems & Networking
Network Administrator
Amherst College
Voice: 413-542-8320
Fax:    413-542-2626
bsertel () amherst edu
----------------------------------






-------------------------------------------------------
This sf.net email is sponsored by: Dice - The leading online job board
for high-tech professionals. Search and apply for tech jobs today!
http://seeker.dice.com/seeker.epl?rel_code=31
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: