Difference between revisions of "SNORT: Menjalankan sebagai daemon"

From OnnoWiki
Jump to navigation Jump to search
Line 4: Line 4:
  
 
  snort -c /etc/snort/snort.conf -l /var/log/snort/ -K ascii -D
 
  snort -c /etc/snort/snort.conf -l /var/log/snort/ -K ascii -D
 +
 +
Logging binary
 +
 +
snort -c /etc/snort/snort.conf -l /var/log/snort/ -b -D
  
 
atau
 
atau

Revision as of 10:23, 31 March 2017

Gunakan switch -D Jika snort di instalasi dengan apt install Logging ASCII

snort -c /etc/snort/snort.conf -l /var/log/snort/ -K ascii -D

Logging binary

snort -c /etc/snort/snort.conf -l /var/log/snort/ -b -D

atau

/usr/sbin/snort -d -h 192.168.0.0/24 -l /var/log/snort/ -c /etc/snort/snort.conf -s -D 

atau

/usr/sbin/snort -m 027 -D -d -l /var/log/snort \
    -u snort -g snort -c /etc/snort/snort.conf -S HOME_NET=[192.168.0.0/24] -i ens18


Gunakan full path agar bisa di restart dengan signal SIGHUP

/usr/local/bin/snort -d -h 192.168.1.0/24 \
     -l /var/log/snortlogs -c /usr/local/etc/snort.conf -s -D