Snort mailing list archives
Using alert_unixsock
From: "Joshua Berry" <jberry () PENSON COM>
Date: Mon, 8 Nov 2004 14:13:51 -0600
Has anyone on the list used perl in combination with the alert_unixsock
output module for snort?
If so could I see some of the code, I am having some issues. Also, do
you have to manually create the socket, snort fails if I don't create
the socket myself giving this error:
/var/log/snort/snort_alert file doesn't exist or isn't writable!
I saw that someone had posted that on BSD systems you have to create the
socket file yourself but I am using a linux box.
System profile:
Slackware Linux 10.0, Snort 2.2.0
Josh Berry | CISSP GCIA
Information Security
214-765-1296
--------------------------------------------------------------------
If you spend more on coffee than on IT security, you will be hacked.
What's more, you deserve to be hacked.
-- (Former) White House Cybersecurity adviser Richard Clarke
-------------------------------------------------------
This SF.Net email is sponsored by:
Sybase ASE Linux Express Edition - download now for FREE
LinuxWorld Reader's Choice Award Winner for best database on Linux.
http://ads.osdn.com/?ad_idU88&alloc_id065&op=click
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Using alert_unixsock Joshua Berry (Nov 08)
