[Snort-users] Run as user?

Chris Green cmg at ...1935...
Thu Apr 3 05:47:46 EST 2003


Alberto Gonzalez <albertg at ...8504...> writes:

>> According to the FAQ, the snort tool is supposed to be run as root. Is there any
>> way to run it as a regular user, ie. giving myself permission to read 
>> the stream through eth0?
>> 
>
> (root at ...7183...)(~) snort -?
> [..snip..]
>
>     -g <gname> Run snort gid as <gname> group (or gid) after initialization
>     -u <uname> Run snort uid as <uname> user (or uid) after initialization
>
> [..snip..]
>
> make sure the logging directory has the proper permissions. And take in 
> mind you won't be able to send a HUP signal. Check the snort-users archive 
> i believe this came up awhile ago.

In Snort 2.0, it will atleast tell you that HUP isn't supported with
chroot :)
-- 
Chris Green <cmg at ...1935...>
Laugh and the world laughs with you, snore and you sleep alone.




More information about the Snort-users mailing list