Snort mailing list archives

Re: problems with barnyard, snort and mysql


From: Paul Schmehl <pauls () utdallas edu>
Date: Fri, 11 Mar 2005 16:01:36 -0600

--On Friday, March 11, 2005 06:54:42 PM -0300 Alejandro Flores <alejandrorflores () gmail com> wrote:

Start Barnyard:
barnyard -c /etc/barnyard.conf -d /var/log/snort -a
/var/log/snort-archive -f snort.log -w /var/log/snort/waldo -s
/etc/snort/sid-msg.map -g /etc/snort/gen-msg.map -p
/etc/snort/classification.config -D

Just a note here:

In the config section of the barnyard.conf file you can add these:

# set other config options
config sid-msg-map: /usr/local/share/snort/sid-msg.map
config gen-msg-map: /usr/local/share/snort/gen-msg.map
config class-file: /usr/local/share/snort/classification.config

(with the correct paths, of course)
to reduce the amount of crap on the commandline when you start by.

(Read the source, Luke.)

Paul Schmehl (pauls () utdallas edu)
Adjunct Information Security Officer
The University of Texas at Dallas
AVIEN Founding Member
http://www.utdallas.edu


-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: