External Syslogging (snort)
Can anyone give me any example syslog.conf and snort.conf lines to get external syslogging working? I am trying to send my alerts via syslog to an external box, and have tried almost everything that I can think of, including searching the snort mailing list, and absolutely nothing will work. I know how to specify an external host in syslog.conf, but im not sure what the snort alerts are named or what to specify in snort.conf, and none of the documentation/manpages are of any help.
Thanks,
ponds
|