Snort - the de facto standard for intrusion detection/prevention
next up previous contents
Next: alert_fast Up: alert_syslog Previous: Options   Contents

Format

alert_syslog: <facility> <priority> <options>

Note:   As WIN32 does not run syslog servers locally by default, a hostname and port can be passed as options. The default host is 127.0.0.1. The default port is 514.

output alert_syslog: [host=<hostname[:<port>],] <facility> <priority> <options>

Figure 2.10: Syslog Configuration Example
\begin{figure}\begin{verbatim}output alert_syslog: 10.1.1.1:514, <facility> <priority> <options>\end{verbatim}
\par\end{figure}



Steven Sturges 2008-04-01