TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your message to
[EMAIL PROTECTED]  Contact [EMAIL PROTECTED] for help with any problems!
----------------------------------------------------------------------------

OK. But what type of log information can be analyzed by OS/Server Sensor, is
there any 
standard between them? BTW, I can not find the whitepaper from www.iss.net.
:(

Thanks a lot.

John Li

> -----Original Message-----
> From: Marc Delince [SMTP:[EMAIL PROTECTED]]
> Sent: Friday, December 01, 2000 9:26 AM
> To:   '[EMAIL PROTECTED]'; Li, John
> Subject:      RE: Can I use RealSecure Server Sensor with snort?
> 
> You can always try to use a RealSecure OS Sensor to analyze the log 
> from SNORT and the result will obviously be compatible with 
> RealSecure logs...
> 
> There is/was a whitepaper on www.iss.net on integrating Cisco Syslogs 
> into RealSecure using a RealSecure Host Agent (the previous name for 
> the OS Sensor).
> 
> Marc
> 
> On Thursday, November 30, 2000 1:38 PM, [EMAIL PROTECTED] 
> [SMTP:[EMAIL PROTECTED]] wrote:
> >
> > TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your
> > message to
> > [EMAIL PROTECTED]  Contact [EMAIL PROTECTED] for help with any
> > problems!
> > 
> --------------------------------------------------------------------
> > --------
> >
> > If one were to write a parser that would basically format the Sn0rt
> > log
> > into the schema that is used by ISS
> >
> > At 05:05 PM 11/30/00 -0500, Li, John wrote:
> >
> > >TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your
> > >message to
> > >[EMAIL PROTECTED]  Contact [EMAIL PROTECTED] for help with 
> any
> > >problems!
> > 
> >-------------------------------------------------------------------
> > >---------
> > >
> > >Hi,
> > >
> > >Can I use server sensor to receive the log from snort and then 
> send
> > >to
> > >management console? How to do that ? Thank you.
> > >
> > >John Li
> >


Reply via email to