| To: | snort-users@lists.sourceforge.net |
|---|---|
| Subject: | [Snort-users] help:store data to mysql |
| From: | fan wu <conjurer1981@yahoo.com.cn> |
| Date: | Sat, 18 Nov 2006 11:03:24 +0800 (CST) |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | snort-list@securepoint.com |
| List-archive: | <http://sourceforge.net/mailarchive/forum.php?forum=snort-users> |
| List-help: | <mailto:snort-users-request@lists.sourceforge.net?subject=help> |
| List-id: | "Snort users talk about... Snort!" <snort-users.lists.sourceforge.net> |
| List-post: | <mailto:snort-users@lists.sourceforge.net> |
| List-subscribe: | <https://lists.sourceforge.net/lists/listinfo/snort-users>, <mailto:snort-users-request@lists.sourceforge.net?subject=subscribe> |
| List-unsubscribe: | <https://lists.sourceforge.net/lists/listinfo/snort-users>, <mailto:snort-users-request@lists.sourceforge.net?subject=unsubscribe> |
| Sender: | snort-users-bounces@lists.sourceforge.net |
|
I have installed snort 2.4+mysql+base+apache.These softwares can run well under fedora 3. Now I have to do a new thing:read a tcpdump file(download from Lincoln Laboratory,DARPA99 )and store them into mysql. I know it's easy to see information in the file via -r under snort, but I want to see them clearly.So I have to do that. I'm looking forward to your answer. Also,I want to know : can snort store all packets it captured,or only store alert ones? thanks, Wu
雅虎免费邮箱-3.5G容量,20M附件 ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net's Techsay panel and you'll get the chance to share your opinions on IT & business topics through brief surveys - and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV _______________________________________________ Snort-users mailing list Snort-users@lists.sourceforge.net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: [Snort-users] Is there any documentation showing how to write a snort plugin?, John Draper |
|---|---|
| Next by Date: | Re: [Snort-users] Pass rules need SID in 2.6.1, Frank Knobbe |
| Previous by Thread: | [Snort-users] 2.6.1 and LOOOONG startup times plus more ignore_scanners info, James Lay |
| Next by Thread: | [Snort-users] Snort 2.6.1 uses all available processor forever, Thomas Munn |
| Indexes: | [Date] [Thread] [Top] [All Lists] |