Have you selected an interface in snort to listen for activity? Also depending on your config, you need to be able to listen through all traffic on the network, one way of doing this is by port mirroring.
Alex On Wed, Sep 4, 2013 at 10:07 AM, <[email protected]> wrote: > > Dear all, > > > i hope this mail finds you well, I installed snort IPS , subscribed to the > rules and applied them on to my Oracle Linux box, though this was done, i > don't seem to see any activity when i go to monitor or check on the > various rules, I wish to know if any one who configured the same could > have had a similar experience? if so what did he do to rectify the problem? > > Looking forward to all your suggestions. > > > Allan > > > _______________________________________________ > The Uganda Linux User Group: http://linux.or.ug > > Send messages to this mailing list by addressing e-mails to: > [email protected] > Mailing list archives: http://www.mail-archive.com/[email protected]/ > Mailing list settings: http://kym.net/mailman/listinfo/lug > To unsubscribe: http://kym.net/mailman/options/lug > > The Uganda LUG mailing list is generously hosted by INFOCOM: > http://www.infocom.co.ug/ > > The above comments and data are owned by whoever posted them (including > attachments if any). The mailing list host is not responsible for them in > any way. >
_______________________________________________ The Uganda Linux User Group: http://linux.or.ug Send messages to this mailing list by addressing e-mails to: [email protected] Mailing list archives: http://www.mail-archive.com/[email protected]/ Mailing list settings: http://kym.net/mailman/listinfo/lug To unsubscribe: http://kym.net/mailman/options/lug The Uganda LUG mailing list is generously hosted by INFOCOM: http://www.infocom.co.ug/ The above comments and data are owned by whoever posted them (including attachments if any). The mailing list host is not responsible for them in any way.
