[Snort-users] @barnyard error

anagha b banagha3 at ...11827...
Mon Sep 2 05:14:57 EDT 2013


Hello all


I used follwing command to run barnyard but befor that removed
barnyard2.waldo file and created new one.

usr/local/bin/barnyard2 -f snort.u2 -u root -g root -c
/srv/snort/etc/barnyard2.conf -w /var/log/snort/barnyard2.waldo -d
/var/log/snort



o/p

--== Initialization Complete ==--

  ______   -*> Barnyard2 <*-
 / ,,_  \  Version 2.1.13 (Build 327)
 |o"  )~|  By Ian Firns (SecurixLive): http://www.securixlive.com/
 + '''' +  (C) Copyright 2008-2013 Ian Firns <firnsy at ...14568...>

WARNING: Ignoring corrupt/truncated waldofile
'/var/log/snort/barnyard2.waldo'
Opened spool file '/var/log/snort/snort.u2.1378112617'
Waiting for new data
^C*** Caught Int-Signal
Barnyard2 exiting
database: Closing connection to database "snort"
===============================================================================
Record Totals:
   Records:           0
   Events:           0 (0.000%)
===============================================================================
Closing spool file '/var/log/snort/snort.u2.1378112617'. Read 0 records

snort not logging into snort.u2?  how to solve this?

Thanks.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20130902/b02f1e65/attachment.html>


More information about the Snort-users mailing list