From owner-freebsd-questions@FreeBSD.ORG Thu Apr 21 14:22:24 2005 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 96A0016A4CE for ; Thu, 21 Apr 2005 14:22:24 +0000 (GMT) Received: from pne-smtpout2-sn1.fre.skanova.net (pne-smtpout2-sn1.fre.skanova.net [81.228.11.159]) by mx1.FreeBSD.org (Postfix) with ESMTP id BB4A343D53 for ; Thu, 21 Apr 2005 14:22:23 +0000 (GMT) (envelope-from freebsd@stortsett.se) Received: from kalle.stortsett.local (81.230.166.90) by pne-smtpout2-sn1.fre.skanova.net (7.1.026.7) id 41E3209600DB9C9C for freebsd-questions@freebsd.org; Thu, 21 Apr 2005 16:22:22 +0200 Received: from susie.mine.nu (unknown [127.0.0.1]) by kalle.stortsett.local (Postfix) with ESMTP id 31FC961CA for ; Thu, 21 Apr 2005 16:22:22 +0200 (CEST) Received: from 131.116.254.197 (proxying for unknown) (SquirrelMail authenticated user per) by susie.mine.nu with HTTP; Thu, 21 Apr 2005 16:22:22 +0200 (CEST) Message-ID: <45436.131.116.254.197.1114093342.squirrel@susie.mine.nu> Date: Thu, 21 Apr 2005 16:22:22 +0200 (CEST) From: "Per B" To: freebsd-questions@freebsd.org User-Agent: SquirrelMail/1.4.4 MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 X-Priority: 3 (Normal) Importance: Normal Content-Transfer-Encoding: quoted-printable Subject: How to configure snort to use with snortsnarf? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 21 Apr 2005 14:22:24 -0000 Hi all! I've installed "snort" and it's up and running. I've also installed "snortsnarf" to get HTML output... But I do not know how to get snort to output in a format that snortsnarf can read. So, anyone that has got this working? What did you put in snort.conf to create a for snortsnarf readable output? I'm running 5.3 p5 and installed both apps from ports, latest versions. I have no database (not yet at least)... Thanks! --=20 Per Berger _ ASCII ribbon campaign ( ) - against HTML, vCards and X - proprietary attachments in e-mail / \