[Snort-devel] interface name reporting?

Fyodor fygrave at ...1...
Sun Nov 19 07:11:57 EST 2000


On Sat, Nov 18, 2000 at 04:39:41AM -0500, Joseph Nicholas Yarbrough wrote:
> Hello all,
> 
> I was wondering if there is a method to have snort append the interface name  
> (that the traffic that triggered the alert came from) to the alert. Would I 

I don't know if you really need this. So far Snort is able to run only on a single
interface per process, so I doubt that having an interface name in logfile could
make any sence. it could be added easily if needed but imho would be overkill :)

Any other opinions? :)


-- 
http://www.notlsd.net
PGP fingerprint = 56DD 1511 DDDA 56D7 99C7  B288 5CE5 A713 0969 A4D1



More information about the Snort-devel mailing list