snort/snort.conf

Wed, 08 Feb 2012 20:07:00 +0200

author
Michael Schloh von Bennewitz <michael@schloh.com>
date
Wed, 08 Feb 2012 20:07:00 +0200
changeset 588
300d43423c2e
permissions
-rw-r--r--

Update version, adapt patch, correct PID writing, correct build on newer
FreeBSD releases, and most importantly introduce new patch to try to
avoid segfault caused by multiple network interfaces with the same (or
no) address. This is common when configuring bridges and tunnels.

     1 ##
     2 ##  snort.conf -- Snort Daemon Configuration
     3 ##
     5 #   common variables
     6 var VAR_PATH  @l_prefix@/var/snort
     7 var RULE_PATH $VAR_PATH/rules
     9 #   output selection
    10 config alertfile:    $VAR_PATH/snort.alert.log
    11 output alert_fast:   $VAR_PATH/snort.alert.log
    12 #output log_tcpdump: $VAR_PATH/snort.alert.cap
    14 #   configuration parameters
    15 config show_year
    16 config order: alert pass log
    18 #   load snort rules configuration
    19 var HOME_NET      any
    20 var EXTERNAL_NET  any
    21 include $RULE_PATH/snort.conf

mercurial