Snort mailing list archives

problem with snort and guardian


From: "Marcin Laskowski" <cineklas () wp pl>
Date: Sat, 27 Mar 2004 08:31:20 +0100

Hi,

I want do configure snort to log alerts to mysql db,
and configure guardian to change my iptables conf.
when there is attack. The problem is with the output
files. Guardian accepts syslog and snort alert files, so
if I want to use alert files I have to change output db
to log (I always used alert in db output line). Is there
any other way to make snort log atacks to alert file?
I don`t think that guardian accepts unified alert files.
(It did`t work at all when I tried) I also use ACID to 
view attacks.


-------------------------------------
Greetings. Maxim


Current thread: