snort-users February 2010 archive
Main Archive Page > Month Archives  > snort-users archives
snort-users: Re: [Snort-users] Archiving Snort logs

Re: [Snort-users] Archiving Snort logs

From: Joel Esler <jesler_at_nospam>
Date: Tue Feb 23 2010 - 15:07:52 GMT
To: firnsy <>

On Feb 23, 2010, at 5:21 AM, firnsy wrote:

> On Tue, 2010-02-23 at 08:47 +0000, Sharma, Ashish wrote:
>> Here I want to know, Is the ‘Barnyard2’ also cleaning up the snort >> logs? >>
> No, it doesn't. Barnyard2 is only parsing the snort unified log files.

Although you could save the unified files and read them back into the db at a later time if you wanted to with barnyard2. As for cleaning up the DB, I think there is a script that can clean up the db.

If you Google "snort db cleanup" many sites come up, however, this one popped out at me. Might give it a shot. -- Joel Esler 302-223-5974 ------------------------------------------------------------------------------ Download Intel&#174; Parallel Studio Eval Try the new software tools for yourself. Speed compiling, find bugs proactively, and fine-tune applications for parallel performance. See why Intel Parallel Studio got high marks during beta. _______________________________________________ Snort-users mailing list Go to this URL to change user options or unsubscribe: Snort-users list archive: