[Oisf-users] Verifying live rule reload? suricata.log stops spooling after rotation?

John Daly longjohngolf at gmail.com
Tue Aug 23 22:54:54 UTC 2016


Hi all,

Reaching out to understand how to verify that Suricata has had the live
rule swap completed successfully. Is there any other way than checking the
'suricata.log'?

I ask because after Suricata runs for a log rotation period, messages no
longer show up in the Suricata log.

I'm running Suricata 3.0.1.

Thanks!
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20160823/8f8c8ea6/attachment.html>


More information about the Oisf-users mailing list