Snort mailing list archives

Re: Oracle database


From: SnortFan <SnortFan () yahoo com>
Date: Sat, 10 Aug 2013 07:52:27 -0400

Hi Abid,
     There is a barnyard2 users group "barnyard2-users () googlegroups com". Try joining and posting there to see if 
anyone is pushing to Oracle using barnyard2. The developers monitor that forum and are pretty responsive. 

Cheers,
Ed

Sent from a mobile device. 

On Aug 9, 2013, at 11:48 AM, Y M <snort () outlook com> wrote:

Barnyard2 has Oracle DB schema. Never tried it though.

https://github.com/firnsy/barnyard2/blob/master/schemas/create_oracle.sql

Sent from my Windows Phone
From: Michal Purzynski
Sent: ‎8/‎9/‎2013 6:39 PM
To: snort-users () lists sourceforge net
Subject: Re: [Snort-users] Oracle database

On 8/9/13 5:15 PM, Jeremy Hoel wrote:
Snort doesn't output to databases, it outputs to a binary unified 2
file.  Other tools (like barnyard2 and Pigsty) take that file and feed
it into to a database.

You might want to check that out those projects and see if they have
any notes for Oracle.

https://github.com/Snorby/snorby/wiki/Installing-Barnyard2

Just a quick link, showing how to compile Barnyard2 against Oracle. The 
snort itself just writes the alert information to a set of binary files 
and not directly to the database - to speed up everything. It's the 
bardnyard2 job to push data to the database of your choice.

Of course once you compile it, you are on your own with everything else 
- I'm not aware of any Oracle DB schema being delivered. This might, or 
might not have an impact on you, if you are or have handy some Oracle 
expert.

To be honest, I'd think again and use MySQL - and save a lot of work.

On Fri, Aug 9, 2013 at 4:55 AM, Abid Ayoub <abid.ayoub () gmail com> wrote:
Hello

I want to use oracle instead of mysql.

So what should i modify in the configuration, so i will get the informations
in oracle ?


Thanks
Abid

------------------------------------------------------------------------------
Get 100% visibility into Java/.NET code with AppDynamics Lite!
It's a free troubleshooting tool designed for production.
Get down to code-level detail for bottlenecks, with <2% overhead.
Download for free and get started troubleshooting in minutes.
http://pubads.g.doubleclick.net/gampad/clk?id=48897031&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort
news!
------------------------------------------------------------------------------
Get 100% visibility into Java/.NET code with AppDynamics Lite!
It's a free troubleshooting tool designed for production.
Get down to code-level detail for bottlenecks, with <2% overhead.
Download for free and get started troubleshooting in minutes.
http://pubads.g.doubleclick.net/gampad/clk?id=48897031&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!


------------------------------------------------------------------------------
Get 100% visibility into Java/.NET code with AppDynamics Lite!
It's a free troubleshooting tool designed for production.
Get down to code-level detail for bottlenecks, with <2% overhead. 
Download for free and get started troubleshooting in minutes. 
http://pubads.g.doubleclick.net/gampad/clk?id=48897031&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!
------------------------------------------------------------------------------
Get 100% visibility into Java/.NET code with AppDynamics Lite!
It's a free troubleshooting tool designed for production.
Get down to code-level detail for bottlenecks, with <2% overhead. 
Download for free and get started troubleshooting in minutes. 
http://pubads.g.doubleclick.net/gampad/clk?id=48897031&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!
------------------------------------------------------------------------------
Get 100% visibility into Java/.NET code with AppDynamics Lite!
It's a free troubleshooting tool designed for production.
Get down to code-level detail for bottlenecks, with <2% overhead. 
Download for free and get started troubleshooting in minutes. 
http://pubads.g.doubleclick.net/gampad/clk?id=48897031&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: