Snort not send Alert to remote syslog server
Snort run and log alert in file /var/log/snort/alert but the alert not are send to remote syslog server. I followed the instructions in the snort manual and rsyslog but nothing. Individually Snort and RSyslo work correctly but it seems that Snort can not pass the alerts to rsyslog. If I use logger everything works.
In rsyslog.conf ==> authpriv.alert @XXX.ZZZ.VVV.RRR:514 and the test
logger -p authpriv.alert "testXXX" work.
Snort log alert in /var/log/snort/alert but nothing arrives at the remote syslog server
|