[Oisf-devel] Unified2 / MySQL

Rich Rumble richrumble at gmail.com
Mon Jan 4 04:29:49 UTC 2010


What does one use to get Unified2 passed into MySQL, I've read that
Barnyard hasn't been updated in quite some time and doesn't work with
Unified2, I see Suricata seems to be logging in both unified and
unified2... I've always had Snort write to MySQL directly, I've not
used Mudpit/Flop/Barnyard as of yet, anyone have any tips or
suggestions? I've always used BASE, however I've been wanting to take
a crack at a new front-end for Snort for sometime, and I think
Suricata might be my inspiration if there is indeed a void with
applications transferring/translating unified2 into SQL. Right now I'm
tail'ing the fast.log file... If I do dive into a front-end, I'll be
sure to look at the stats log as well.
-rich



More information about the Oisf-devel mailing list