Snort mailing list archives

Need to log FULL packets


From: "Sheahan, Paul (PCLN-NW)" <Paul.Sheahan () priceline com>
Date: Wed, 13 Mar 2002 13:06:45 -0500

Hello,

I'm doing an investigation on some unusual UDP traffic on my network and am
using Snort 1.9 on Linux to monitor the data. The traces of each packet are
getting cut off in the logs. How can I be sure I am getting ALL of each
packet in the traces? The more info I can gather on each packet during this
test would be ideal (I'm not concerned about speed or missed packets).

Can anyone recommend the correct Snort switches so I can gather the MOST
thorough data?

Thanks in advance!
Paul


_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: