[Snort-users] Snort 2.0

Michael Steele michaels at ...155...
Thu Apr 17 08:42:11 EDT 2003


It's always a good idea to replace the rules, and the snort.conf when there
is a major upgrade. After the upgrade move any necessary changes from your
old snort.conf to your new snort.conf. Then, after the conversion manually
run your snort run line with a -T at the end to find any errors. Don't
forget to add any of your custom rules back.

 Michael Steele | System Engineer / Support Technician     
 mailto:michaels at ...155...    
 Silicon Defense - The Cyber-War Defense Company
 Website: http://www.silicondefense.com
 Snort: Open Source Network IDS - http://www.snort.org

-----Original Message-----
From: snort-users-admin at lists.sourceforge.net
[mailto:snort-users-admin at lists.sourceforge.net] On Behalf Of Ma, Kenneth K.
Sent: Thursday, April 17, 2003 8:04 AM
To: 'snort-users at lists.sourceforge.net'

Hello, I upgraded my Snort 1.9 to Snort 2.0. with mysql.  I have a
mysql/ACID database.  Now my 2.0 snort box is not reporting/populating the
database.  Is there a configuration file that I am missing?  

In my snort.conf file, the output database file is below

output database:  log. mysql, user=username password=userpassword dbname=db
host=dbhost sensor_name=sensor name
output alert_syslog:  LOG_AUTH LOG_ALERT

Am I missing something here?  Thank you in advance for your help.

Kenneth Ma
System Software Specialist
Department of Motor Vehicles
2415 First Ave
Sacramento, CA  95818
(916) 657-8198
kma at ...8911...

This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
Snort-users mailing list
Snort-users at lists.sourceforge.net
Go to this URL to change user options or unsubscribe:
Snort-users list archive:

More information about the Snort-users mailing list