[Snort-users] Barnyard and Drop events
Josep Román
josep.roman at ...11827...
Sat Sep 29 19:48:51 EDT 2007
Hi all,
I guess some of you have already found the same problem as I have.
Having snort_inline & barnyard running, I found out the drop events are
being logged by snort_inline but not to being picked up by barnyard.
Therefore, they're not shown in the Base console.
Since I'm using only alert_unified & log_unified it took me a while until I
turned on the alert_fast option to see the [Drop] keyword on each dropped
event line.
What approaches have you followed to have that fixed? (Perhaps modifying
barnyard source code?)
Thanks in advance and have a nice Sunday...
Josep Román
-------------- next part --------------
A non-text attachment was scrubbed...
Name: winmail.dat
Type: application/ms-tnef
Size: 7818 bytes
Desc: not available
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20070930/745d49ed/attachment.bin>
More information about the Snort-users
mailing list