[Snort-users] Run as user?

Joe Hill joehill at ...3945...
Wed Apr 2 23:17:56 EST 2003


On Thu, 3 Apr 2003 01:03:03 -0500 (EST)
Alberto Gonzalez <albertg at ...8504...> wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> 
> 
> 
> > sorry, what I meant was to actually run snort without first su'ing to root.
> > 
> > is there any way to do this and have access to eth0?
> > 
> 
> search google, I believe there is a kernel module[1] out there that will 
> allow a non-privileged user to set eth0 into promisc mode.

I just want to use this for learning, it would be nice to just go "Eterm -e snort blah blah blah"

> as to /var/log/snort you will need to make the directory yourself. 
> 
already done and it looks like we are up and running. Now to figure out what all that mumbo-jumbo scrolling across my term means...I recall seeing something in snort.conf about a simpler output...

anyway, thanks for the help and info!

>  Cheers,
>  Alberto Gonzalez
> 
> [1] - sorry, i don't remember the name.... but i will check for ya.
> 
> - -- 
> "Success comes to the person who does today, what you are thinking of doing tomorrow." 
> 
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.2.1 (GNU/Linux)
> 
> iD8DBQE+i86ca3vAB/3yp/IRAhZDAJ0cZBvxcbcrA7tNxSytuxijk0gg1ACfRLhb
> +SoYqoeW4QTy63MdN7CLIto=
> =hn8N
> -----END PGP SIGNATURE-----


-- 








More information about the Snort-users mailing list