|
|
| <prev next> |
Choosing A Webhost: |
Syslog reporting: msg#00000security.ids.snort.barnyard.user
Hello all, this is my first post to the group. I have searched through the archive and I can not find the answer I am seeking. Can a single barnyard instance do multiple types of reporting? I have my snort logging to a unified file and barnyard is populating my DB. This is working perfectly. I actually have multiple Ethernet cards on this IDS and have multiple instances of snort and barnyard running, and still everything is working perfectly. What I would like to do is implement swatch to alert me when certain events occur. I was wondering if the 2 already running instances of barnyard could do both output to acid and output to syslog? Or will I have to again, run more instances of barnyard? I have uncommented both acid and syslog sections of the barnyard.conf and I only get logging to acid. I am running Snort 2.3.2 and Barnyard 0.2.0 Thanks in advance, ---- Peter Barton Corporate Network Manager IESI Corporation Work: (817)632-4000 Fax: (817)632-4047 ------------------------------------------------------- This SF.Net email is sponsored by: New Crystal Reports XI. Version 11 adds new functionality designed to reduce time involved in creating, integrating, and deploying reporting solutions. Free runtime info, new features, or free trial, at: http://www.businessobjects.com/devxi/728
|
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Next by Date: | RE: Syslog reporting, Michael Scheidell |
|---|---|
| Next by Thread: | RE: Syslog reporting, Michael Scheidell |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
Free MagazinesCisco NewsReceive a free quarterly e-newsletter with exclusive articles on how Cisco IT uses its own products and solutions to enable the business. subscribe Systems Management News, the newspaper for IT systems administration and data center managers! Each issue of Systems Management News is chock-full of news and analysis to help you understand what's happening in your field. subscribe The Enterprise Newsweekly eWeek is the essential technology information source for builders of e-business. subscribe Oracle Magazine Oracle Magazine contains technology strategy articles, sample code, tips, Oracle and partner news, how to articles for developers and DBAs, and more. Oracle (NASDAQ: ORCL) is the world's largest enterprise software company. subscribe Total Telecom Total Telecom is "The Economist of the communications industry". subscribe |