Snort mailing list archives
Possible error with the "-L" flag?
From: "Dave Garn (UUNET)" <dgarn () UU NET>
Date: Fri, 4 Apr 2003 20:16:11 +0000 (GMT)
From snort.8 man page:
-L binary-log-file Set the filename of the binary log file to binary-log- file. If this switch is not used, the default name is a timestamp for the time that the file is created plus "snort.log". I'm specifying " -b -L current.log " on the command line. All of my log files are showing up as "current.log.<timestamp>" where timestamp is the result of a time(NULL) call in spo_log_tcpdump.c (line 253, I believe). This did not used to be the case with the older version of snort I was using. I'm trying to find out if this is a bug or if this is new "Standard Operating Procedure" for snort to automatically add a timestamp to the output filename. I can see the use in automatically adding a timestamp, but I can also see the use is making it an option (whether to add or not). I had understood from the man page that you only get a timestamp if you do NOT use the -L command. _________________________________ Dave Garn Internet Security Engineer UUNET Technologies Ashburn, VA ------------------------------------------------------- This SF.net email is sponsored by: ValueWeb: Dedicated Hosting for just $79/mo with 500 GB of bandwidth! No other company gives more support or power for your dedicated server http://click.atdmt.com/AFF/go/sdnxxaff00300020aff/direct/01/ _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Possible error with the "-L" flag? Dave Garn (UUNET) (Apr 06)