[Oisf-users] About the ever-growing stats.log

Yasha Zislin coolyasha at hotmail.com
Thu Apr 30 17:00:46 UTC 2015


I've changed mine to update every 60 seconds instead of 8.And configured logrotate to roll stats.log to prevent from running out of space.I also use last two sets of logs in stats.log to figure out how many packets were processed and how many alerts occurred in a minute

> Date: Thu, 30 Apr 2015 09:46:09 -0700
> From: jimoe at sohnen-moe.com
> To: oisf-users at lists.openinfosecfoundation.org
> Subject: Re: [Oisf-users] About the ever-growing stats.log
> 
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> On 04/29/2015 12:17 AM, Peter Manev wrote:
> > - stats: enabled: yes filename: stats.log append: no
> > 
>   Did that. It makes no difference.
> 
> - -- 
> James Moe
> moe dot james at sohnen-moe dot com
> 520.743.3936
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v2
> 
> iEYEARECAAYFAlVCXFEACgkQzTcr8Prq0ZOkdgCfSgjCjmHz0o6lVL5ekNuzR63Z
> tQIAnjU0Ktcjh4mG+3jCSt+V1VY/khjU
> =gOxG
> -----END PGP SIGNATURE-----
> _______________________________________________
> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
> Suricata User Conference November 4 & 5 in Barcelona: http://oisfevents.net
 		 	   		  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20150430/99a7e918/attachment-0002.html>


More information about the Oisf-users mailing list