[Snort-users] Snort Configuration

Luís Vitório Cargnini vitorio at ...10086...
Fri Sep 19 16:00:56 EDT 2003


Exist an way to configurate snort to don't sent the message of alarm ?? 
i don't want to receive in syslog the message, but only the code of the
message 1631
example:
this is what i receive now
Sep 19 10:15:38 192.168.1.7 snort: [1:1633:4] CHAT AIM receive message
[Classification: Potential Corporate Privacy Violation] [Priority: 1]:
{TCP} 64.12.26.84:5190 -> 192.168.1.160:43357
i want to receive in this form:

Sep 19 10:15:38 192.168.1.7 snort: [1:1633:4] 1633 [Classification:
Potential Corporate Privacy Violation] [Priority: 1]: {TCP}
64.12.26.84:5190 -> 192.168.1.160:43357


1633 || CHAT AIM receive message

thanks and regards.


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20030919/c99e2356/attachment.sig>


More information about the Snort-users mailing list