Snort - the de facto standard for intrusion detection/prevention
next up previous contents
Next: Writing Good Rules Up: Snort Multi-Event Logging (Event Previous: Event Queue Configuration Options   Contents

Event Queue Configuration Examples

The default configuration:

config event_queue: max_queue 8 log 3 order_events content_length

Example of a reconfigured event queue:

config event_queue: max_queue 10 log 3 order_events content_length

Use the default event queue values, but change event order:

config event_queue: order_events priority

Use the default event queue values but change the number of logged events:

config event_queue: log 2



Steven Sturges 2007-05-11