[Oisf-users] Recommend version of 'file/libmagic' for suricata?

Cooper F. Nelson cnelson at ucsd.edu
Fri Jul 19 20:06:07 UTC 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Ok, I disabled the DNS parsers by commenting out the code as described.
 Load average is a little better:

> load average: 13.99, 14.28, 14.87

I don't have enough disk I/O to log http and dns, so I'm fine with
disabling this for now.

- -Coop

On 7/19/2013 11:24 AM, Anoop Saldanha wrote:
> Cooper,
> 
> Probably the dns stuff.  If you are seeing a fair bit of drops and the
> dns parser/logging isn't that important, I would suggest disabling it
> for now.  If there's any way to still keep it enabled, it would be
> nice as well.  Helps us with testing all the new stuff.
> 


- -- 
Cooper Nelson
Network Security Analyst
UCSD ACT Security Team
cnelson at ucsd.edu x41042
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.17 (MingW32)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/

iQEcBAEBAgAGBQJR6ZwvAAoJEKIFRYQsa8FWS+0IAKdchWB9IQkxivGE81j0SSDx
v939d+AyChToGObRM0mBdZX1j2cQ/udI1+LNzveyEcnwWO6wKG1xoMsD27mRBqTG
FdkFpCbuqz0YR1DggA2zIDfSS90aoFauMiTH2Or6EOkbE5R23Pwk7sjrHi/I6/V7
JrLe8g98I+Uhj1yzz2sYRc4lNS35wnGVkvAnWaSVQPqs7eoEOuuNvSwm+fIMqwrq
ly5m8ISKvPjz7o32XHmkS2Prl0HFfjqc1l36TbYZ5atdGkgAjU0GiFiL1auhgY2w
IkgcxKBDTAx+zpw/zhUIvtxBMu14e2V+h9SKoqMOulQiUyCcVsIjtNxiJ1S6ecU=
=w5nn
-----END PGP SIGNATURE-----



More information about the Oisf-users mailing list