Snort mailing list archives

Re: Quick Barnyard question...


From: Mihai Petre <MPetre () morneausobeco com>
Date: Thu, 11 Aug 2005 16:50:40 -0400


Oh.
so sguil is only a mysql output for a dbase with a different schema than
the acid/base.
Right ?

Thanks for the clarification
Mishou

On 08/11/2005 04:46:13 PM Paul Schmehl wrote:
--On Thursday, August 11, 2005 15:47:21 -0400 Mihai Petre
<MPetre () morneausobeco com> wrote:

two more questions

* The sguil output is part of the normal build or the source has to be
patched ?

The sguil plugin is built in to barnyard 0.2.0.  You do not have to patch
it.

* The output can be directed to different outputs in the same time ? I
mean using mysql and sguil together is it "doable" ?

If you're going to run sguil, you *must* run mysql.  Sguil uses mysql for
everything.

Paul Schmehl (pauls () utdallas edu)
Adjunct Information Security Officer
University of Texas at Dallas
AVIEN Founding Member
http://www.utdallas.edu/ir/security/

Le présent courriel et toutes les pièces jointes contiennent de
l'information privée, exclusive, privilégiée et/ou confidentielle
s'adressant uniquement au destinataire. Toute utilisation, copie ou
distribution non autorisée du contenu de ce courriel est strictement
interdite. Si vous n'êtes pas le destinataire de ce message et que vous
l'avez reçu par erreur, veuillez le supprimer et en informer immédiatement
l'expéditeur.

This e-mail communication, including all attachments, may contain private,
proprietary, privileged and/or confidential information and is intended
only for the person to whom it is addressed. Any unauthorized use, copying
or distribution of the contents of this e-mail is strictly prohibited. If
you are not the intended recipient of this e-mail, and have received it in
error, please delete it and notify the sender immediately.

Current thread: