[Oisf-users] [oisf-users] Consolidating Stats File Results from Multiple Interface Monitoring

Peter Manev petermanev at gmail.com
Fri Feb 10 01:44:23 UTC 2012


I don't think this is possible(in suri), you could of course use some
bash/perl/your choice of scripting to achieve that.


On Thu, Feb 9, 2012 at 2:33 AM, Josh White <josh at securemind.org> wrote:

> When I run Suri to monitor multiple interfaces like "suricata -c
> /etc/suricata/suricata.yaml -i em1 -i em2 -i em3" the stats.log file has
> multiple entries for each stat. "one entry for each interface being
> monitored"
> Is there an easy way to consolidate the stats so all the interface stats
> are consolidated?
> Josh
> _______________________________________________
> Oisf-users mailing list
> Oisf-users at openinfosecfoundation.org
> http://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users

Peter Manev
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20120210/2a88836a/attachment-0002.html>

More information about the Oisf-users mailing list