I just double checked it with 1.2dev (rev 6e7a8f3) and it creates the log fine.....<br><br><div class="gmail_quote">On Thu, Dec 15, 2011 at 12:51 PM, Peter Manev <span dir="ltr"><<a href="mailto:petermanev@gmail.com">petermanev@gmail.com</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0pt 0pt 0pt 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">Hi,<br>How do you start Suricata exactly?<br><br>thanks<div class="HOEnZb"><div class="h5"><br><br>
<div class="gmail_quote">On Thu, Dec 15, 2011 at 12:38 PM, Delta Yeh <span dir="ltr"><<a href="mailto:delta.yeh@gmail.com" target="_blank">delta.yeh@gmail.com</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0pt 0pt 0pt 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">Hi,<br>
I my test, I find log to file does not work if suricata run as daemon.<br>
<br>
suricata.yaml :<br>
logging:<br>
default-log-level: info<br>
outputs:<br>
- console:<br>
enabled: yes<br>
- file:<br>
enabled: yes<br>
filename: /var/log/suricata.log<br>
<br>
run suricata and then<br>
<br>
tail -f /var/log/suricata.log<br>
<br>
<br>
I can see runtime logs only without "-D" option.<br>
_______________________________________________<br>
Oisf-users mailing list<br>
<a href="mailto:Oisf-users@openinfosecfoundation.org" target="_blank">Oisf-users@openinfosecfoundation.org</a><br>
<a href="http://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users" target="_blank">http://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users</a><br>
</blockquote></div><br><br clear="all"><br></div></div><span class="HOEnZb"><font color="#888888">-- <br>Peter Manev<br>
<div></div>
</font></span></blockquote></div><br><br clear="all"><br>-- <br>Peter Manev<br>