Hi all,
I am trying to use SnortSnarf to view my logs from snort. I am logging data
in the snort files at
/var/log/snort
alert 667
portscan.log 10
I can connect to SnortSnarf using a web browser but for the life of me I
cannot get any inputs. I am using the configurations
outlined at
http://ibiblio.org/gferg/ldp/Snort-Statistics-HOWTO/configuration.htm...
SNARF-CONFIG
everything looks fine but it will not work.. Any suggestions, help,
comments no matter how small would be greatly appreciated.
Included below is what I get at the browser. Is the SnortFileInput model
trying to read a file from /var/log/snort.alert?
0 alerts found using input module SnortFileInput, with sources:
a.. /var/log/snort.alert