Snort mailing list archives

Re: Alerts


From: Ian Macdonald <secsnort () dirk demon co uk>
Date: Thu, 13 Jun 2002 13:26:03 -0500 (EST)


Demarc (Costs money) is one solution, their 1.6 product has some nice
email features, you can now send the payload of the pack as part of the
message which is really nice.

Ian

On Sat, 8 Jun 2002, Darren Young wrote:

What tools are there to take snort alerts and forward them out as an email
alert? Right now I have 2 sensors reporting to a MySQL database.
Additionally I have syslog configured on the sensors to forward messages to
my loghost. What are the options? Any tools that could perhaps watch a table
in the database or watch syslog then 'intelligently' send out alerts via
email or a SNPP or something?

I'd really like to know what other people have done to get these alerts to
their pager or cell phone...

Thanks,

Darren Young
darren () younghome com


_______________________________________________________________

Don't miss the 2002 Sprint PCS Application Developer's Conference
August 25-28 in Las Vegas - http://devcon.sprintpcs.com/adp/index.cfm?source=osdntextlink

_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users



_______________________________________________________________

Don't miss the 2002 Sprint PCS Application Developer's Conference
August 25-28 in Las Vegas - http://devcon.sprintpcs.com/adp/index.cfm?source=osdntextlink

_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: