|
|
|
|
Snort Forums Archive
Archive Home » Linux » Can't get alerts to send to remote syslog server
Please note that the categories listed below represent an archived version of our forums pages. To view the current version and be able to post and reply to threads, please register and login here to go to the full forums pages.
[ Notice: Full Version of This Topic ]
Can't get alerts to send to remote syslog server
Posted by Jamy on September 26, 2006 07:30:44
I am trying to configure snort to send to a remote syslog server. I editied the syslog file to the following:
output alert_syslog: host=192.xx.xx.xx:514, LOG_AUTH LOG_ALERT
I do not seen any logs coming to the syslog server, and when I run "snort -c /etc/snort/snort.conf"
I get the error:
WARNING /etc/snort/snort.conf (686) => Unrecognized syslog facility/priority: host=166.124.246.15:514,
|
|
Posted by Jamy on September 26, 2006 07:31:15
Forgot to mention, this is on a CentOS system. |
|
|
|
|
|