[Snort-users] Base Barnyard and Unified Logs

Wes Young wcyoung at ...12754...
Mon Mar 14 10:31:41 EST 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

How does Base read in it's signatures from a MySQL db??

I have barnyard reading in the logs via the sig-msg.map file, so the
inserting to the MySQL db is ok.. (my alerts in aanval are being
resolved correctly), but where does BASE get it's sigs from? All I get
is a signature number, no resolution (using it for my logs).
- --
Wes Young
Network Security Analyst
University at Buffalo
GPG Key: http://saxjazman9-security.blogspot.com/2005/01/gpg-key.html
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.6 (GNU/Linux)

iD8DBQFCNdh61M5o0FsrrbERAo15AJ9kaBPAlEJLQgM8TkcJFIBwNHQOfwCeIl5f
seN/iy2zSlLQDurw8LaEc1Y=
=Vv1t
-----END PGP SIGNATURE-----




More information about the Snort-users mailing list