[Snort-users] email notification scripts

Ryan Ordway ryan at ...7885...
Thu Jan 2 16:00:43 EST 2003

	I've recently moved from an alert logging based Snort system to a
MySQL based logging Snort system. Previously I had a script that would
parse the alert file periodically and email the output to me if certain
conditions existed (certain rules had been matched). Now of course, there
is no alerts file to parse.

	Is there a script available online somewhere that will connect to
the database and run a query to list all alerts logged in the last x
amount of time? I'm trying to write one myself, but not having much luck
unfortunately.... maybe something to use as an example?

	Thanks muchly,


ryan at ...7885...
HELO... my name is root... you have SIGKILLed my father... prepare to vi!

     Hi! Can you to speak to me the learn for to speak the Unix?

More information about the Snort-users mailing list