[Oisf-devel] Logging alerts to syslog

Victor Julien victor at inliniac.net
Tue Feb 1 08:00:00 UTC 2011


On 02/01/2011 07:41 AM, Randal T. Rioux wrote:
> Disclosure: I work for ArcSight/HP.
> 
> Currently supported SmartConnectors:
> 
> Snort DB 		2010-09-24

Suricata should support this through barnyard, barnyard2.

> Snort File (Legacy) 	2010-09-24
> Snort Multiple File 	2010-09-24

Not sure what these are.

> Snort Syslog 		2010-09-24

Our syslog output is (should be) compatible to Snort's.

> Snort/Barnyard File	2010-02-11

This should work as well.

> 
> Unified2 is not supported and I have no updates. ULF (Unified1) is.
> 
> I am working on the CEF output plugin for Barnyard2 though.

Would you be interested in doing a native Suricata output plugin for
CEF? Many ppl dislike using barnyard...

Cheers,
Victor

-- 
---------------------------------------------
Victor Julien
http://www.inliniac.net/
PGP: http://www.inliniac.net/victorjulien.asc
---------------------------------------------




More information about the Oisf-devel mailing list