[Snort-users] Intrusion Detection with Snort

Nuno Miguel Neves nneves at ...351...
Thu Oct 5 10:40:57 EDT 2000


Hi.

I'm using snort-1.6.3-patch2.

What is the correct command line to make snort act as an intrusion detector.


I ran with "snort -d -l /var/log/snort -M machines -c snort-lib" and then
from another subnet, I did a nmap -sT -O host, but snort didn't give any
alert! :-(

I've already changed the HOME_NET variable to my network (It is not a class
C network, it's a /27 subnetwork, does that has anything to do?).

Thanks for any answer, since I'm getting desperate...
--                  
                  nneves at ...351...    Dept. Informatica, Fac. Ciencias,
|\ |    |\ |      Tel: +351 21 7500528  Univ. Lisboa, Bloco C5, Campo Grande
| \|uno | \|eves  Fax: +351 21 7500084  1700 Lisboa, Portugal



More information about the Snort-users mailing list