[Snort-users] Repost: Syslog, but I don't want it
neil at ...1633...
Fri Jun 1 13:17:14 EDT 2001
Marc Thompson <Marc.Thompson at ...2101...> wrote in response to me:
>You showed me your snort startup line:
> snort -dD -h 111.222.333.444/24 -l $LOGPATH -c $RULESPATH/$RULESNAME -o
>In my snort configuration file, I was setting tcpdump logging, so hadn't
>set the -l $LOGPATH option. I added the -l $LOGPATH argument on the command
>line and it seems to have prevented syslog logging, which is what I want.
>Also, it hasn't affected the tcpdump output, which I need. All is well.
Excellent! Thanks for letting me know; I'm glad I was able to help.
Neil Dickey, Ph.D.
Northern Illinois University
More information about the Snort-users