This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision Next revision Both sides next revision | ||
сервис_barnyard2 [2015/06/03 10:45] val |
сервис_barnyard2 [2015/06/05 10:09] val [FreeBSD] |
||
---|---|---|---|
Line 35: | Line 35: | ||
# cat /etc/rc.conf | # cat /etc/rc.conf | ||
- | ... | ||
</code><code> | </code><code> | ||
+ | ... | ||
barnyard2_enable=yes | barnyard2_enable=yes | ||
barnyard2_flags="-D -d /var/log/snort/ -f snort.log" | barnyard2_flags="-D -d /var/log/snort/ -f snort.log" | ||
- | ... | + | </code><code> |
+ | # service snort stop | ||
+ | |||
+ | # rm /var/log/snort/* | ||
+ | |||
+ | # service snort start | ||
+ | |||
+ | # service barnyard2 start | ||
</code> | </code> | ||
+ | ==== Принцип отбора правил ==== | ||
+ | |||
+ | <code> | ||
+ | server# cat classification.config | ||
+ | </code><code> | ||
+ | ... | ||
+ | config classification: web-application-attack,Web Application Attack,1 | ||
+ | ... | ||
+ | </code> | ||