[Oisf-users] A few questions about logging.

Victor Julien lists at inliniac.net
Tue Aug 5 11:21:32 UTC 2014


On 08/05/2014 05:32 AM, Cooper F. Nelson wrote:
> Yup, I don't understand named pipes.  You need to attach the consumer
> process to all the pipes first before starting suricata, otherwise it
> will block the process.

So did you find a way to make it work?

> On 8/4/2014 1:03 PM, Cooper F. Nelson wrote:
> 
>> This sort of worked in that I could get a bit of data out of the named
>> pipes, but suricata would then wedge and stop processing packets.  I
>> tried all the different filetypes, nothing worked as expected.
> 
>> It could be I don't understand something about named pipes on linux, as
>> I don't have much experience using them.  Is it possible given that the
>> named pipes are 0 bytes in size that suricata gets confused trying to
>> monitor them?
> 
>> _______________________________________________
>> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
>> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
>> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
>> OISF: http://www.openinfosecfoundation.org/
> 
> 
> 

-- 
---------------------------------------------
Victor Julien
http://www.inliniac.net/
PGP: http://www.inliniac.net/victorjulien.asc
---------------------------------------------




More information about the Oisf-users mailing list