Snort mailing list archives

Problems logging to syslog and mysql simultaneously


From: <dlpassport () s2access com>
Date: Wed, 19 Jun 2002 12:32:20 -0500

Hello list.  I am running Snort 1.8.7-mysql-win32 and am having the
following problem.

I would like to log to the local mysql database as well as a remote syslog.
From all that I can find, the only way to log to a remote syslog is with
a -s 1.1.1.1 option from the command line.  When I specify this on the
command line, snort ignores my output database statement.

Is there anyway to specify a remote syslog server within snort.conf?  What
else could be causing this problem?  I'd prefer not to log to a local
syslogd then forward.

Thanks,
Dallas LaRose

<--snip from snort.conf-->
output alert_syslog: LOG_AUTH LOG_ALERT
output database: log, mysql, user=snort password=blah dbname=snort port=3306
host=localhost
<--snip-->


----------------------------------------------------------------------------
                   Bringing you mounds of caffeinated joy
                   >>>     http://thinkgeek.com/sf    <<<

_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: