Subject: Scripting snort startup as Daemon & writing to a syslog....
To: None <tech-security@netbsd.org>
From: Eric Potter <eric@centralnexxus.com>
List: tech-security
Date: 12/04/2001 12:47:41
This is a multi-part message in MIME format.

------=_NextPart_000_00F2_01C17CC1.DCC2C990
Content-Type: multipart/alternative;
	boundary="----=_NextPart_001_00F3_01C17CC1.DCC2C990"


------=_NextPart_001_00F3_01C17CC1.DCC2C990
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

Sorry for this,=20

Complete newbie so plz be patient...

Now that I have snort writing to a logfile and an alert on 1.5.2 I was =
hoping someone could assist me in putting the bells and whistles =
together,=20

I don't think I understand the README steps to write it to my syslog =
server=20

AND

I am so new to bsd, I am not sure how to get this sucker to run as a =
background process.

All help is appreciated

Eric Potter
Central Nexxus Inc.
503-750-7762

------=_NextPart_001_00F3_01C17CC1.DCC2C990
Content-Type: text/html;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; =
charset=3Diso-8859-1">
<META content=3D"MSHTML 6.00.2600.0" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
<DIV><FONT face=3DArial size=3D2>Sorry for this, </FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Complete newbie so plz be =
patient...</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Now that I have snort writing to a =
logfile and an=20
alert on 1.5.2 I was hoping someone could assist me in putting the bells =
and=20
whistles together, </FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>I don't think I understand the README =
steps to=20
write it to my syslog server </FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>AND</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>I am so new to bsd, I am not sure how =
to get this=20
sucker to run as a background process.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>All help is appreciated</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Eric Potter<BR>Central Nexxus=20
Inc.<BR>503-750-7762</FONT></DIV></BODY></HTML>

------=_NextPart_001_00F3_01C17CC1.DCC2C990--

------=_NextPart_000_00F2_01C17CC1.DCC2C990
Content-Type: text/x-vcard;
	name="Eric R Potter.vcf"
Content-Transfer-Encoding: quoted-printable
Content-Disposition: attachment;
	filename="Eric R Potter.vcf"

BEGIN:VCARD
VERSION:2.1
N:Potter;Eric;R;Mr.
FN:Eric R Potter
ORG:Central Nexxus, Inc.;Corporate
TITLE:President
TEL;WORK;VOICE:503-750-7762
TEL;PAGER;VOICE:5037507762@voicestream.net
TEL;WORK;FAX:503-213-5857
ADR;WORK:;503-670-7761;13030 sw 115th Ave.;Tigard;OR;97223;USA
LABEL;WORK;ENCODING=3DQUOTED-PRINTABLE:503-670-7761=3D0D=3D0A13030 sw =
115th Ave.=3D0D=3D0ATigard, OR 97223=3D0D=3D0AUSA
ADR;HOME:;;;;;;USA
LABEL;HOME:USA
URL;HOME:http://www.centralnexxus.com
URL;WORK:http://www.centralnexxus.com/
BDAY:19710101
KEY;X509;ENCODING=3DBASE64:
    =
MIIEZDCCA82gAwIBAgIQcOcvjgPc9jYrYFsfD/yldzANBgkqhkiG9w0BAQQFADCBzDEXMBUG
    =
A1UEChMOVmVyaVNpZ24sIEluYy4xHzAdBgNVBAsTFlZlcmlTaWduIFRydXN0IE5ldHdvcmsx
    =
RjBEBgNVBAsTPXd3dy52ZXJpc2lnbi5jb20vcmVwb3NpdG9yeS9SUEEgSW5jb3JwLiBCeSBS
    =
ZWYuLExJQUIuTFREKGMpOTgxSDBGBgNVBAMTP1ZlcmlTaWduIENsYXNzIDEgQ0EgSW5kaXZp
    =
ZHVhbCBTdWJzY3JpYmVyLVBlcnNvbmEgTm90IFZhbGlkYXRlZDAeFw0wMTExMjUwMDAwMDBa
    =
Fw0wMjAxMjQyMzU5NTlaMIIBCDEXMBUGA1UEChMOVmVyaVNpZ24sIEluYy4xHzAdBgNVBAsT
    =
FlZlcmlTaWduIFRydXN0IE5ldHdvcmsxRjBEBgNVBAsTPXd3dy52ZXJpc2lnbi5jb20vcmVw
    =
b3NpdG9yeS9SUEEgSW5jb3JwLiBieSBSZWYuLExJQUIuTFREKGMpOTgxHjAcBgNVBAsTFVBl
    =
cnNvbmEgTm90IFZhbGlkYXRlZDEnMCUGA1UECxMeRGlnaXRhbCBJRCBDbGFzcyAxIC0gTWlj
    =
cm9zb2Z0MRQwEgYDVQQDFAtFcmljIFBvdHRlcjElMCMGCSqGSIb3DQEJARYWZXJpY0BjZW50
    =
cmFsbmV4eHVzLmNvbTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEAzSfMjKSEQIIJ4ZT1
    =
UEVjlSbPrsROmjl2xrcxtj1XloIsXKMQK4jlxz713Nq2RJdiZs+PX1C2BwVJvX8pVMHzQ2ii
    =
iVOlRPPNEeghOiwwtGI1r49mxJkCp8VxOwxLpe/+Dc+CYdkIsZ3l8yRVpogHlLD/UwfKAYKs
    =
3sj9PAU9gN0CAwEAAaOCAQYwggECMAkGA1UdEwQCMAAwgawGA1UdIASBpDCBoTCBngYLYIZI
    =
AYb4RQEHAQEwgY4wKAYIKwYBBQUHAgEWHGh0dHBzOi8vd3d3LnZlcmlzaWduLmNvbS9DUFMw
    =
YgYIKwYBBQUHAgIwVjAVFg5WZXJpU2lnbiwgSW5jLjADAgEBGj1WZXJpU2lnbidzIENQUyBp
    =
bmNvcnAuIGJ5IHJlZmVyZW5jZSBsaWFiLiBsdGQuIChjKTk3IFZlcmlTaWduMBEGCWCGSAGG
    =
+EIBAQQEAwIHgDAzBgNVHR8ELDAqMCigJqAkhiJodHRwOi8vY3JsLnZlcmlzaWduLmNvbS9j
    =
bGFzczEuY3JsMA0GCSqGSIb3DQEBBAUAA4GBAKzeALcFl2xhW2DIIHwdB0e5iX/SucQCTH20
    =
F0UR7huBHzLwmZ935psHXVhwBn9Cdsr/k5FcqLKzBjZlgjGX0pCBmZ7KH+PCPXI19II4SCRE
    tLazQwd+Xvq1/ms/vffe3Xrg1fLy/QyxoLUSy4ueifjJ8auO1oa4JMy3vFyE+c2n


KEY;X509;ENCODING=3DBASE64:
    =
MIIEcTCCA9qgAwIBAgIQPmd92i+J1Fas0vSfTcvOvTANBgkqhkiG9w0BAQQFADCBzDEXMBUG
    =
A1UEChMOVmVyaVNpZ24sIEluYy4xHzAdBgNVBAsTFlZlcmlTaWduIFRydXN0IE5ldHdvcmsx
    =
RjBEBgNVBAsTPXd3dy52ZXJpc2lnbi5jb20vcmVwb3NpdG9yeS9SUEEgSW5jb3JwLiBCeSBS
    =
ZWYuLExJQUIuTFREKGMpOTgxSDBGBgNVBAMTP1ZlcmlTaWduIENsYXNzIDEgQ0EgSW5kaXZp
    =
ZHVhbCBTdWJzY3JpYmVyLVBlcnNvbmEgTm90IFZhbGlkYXRlZDAeFw0wMTExMjcwMDAwMDBa
    =
Fw0wMjExMjcyMzU5NTlaMIIBFTEXMBUGA1UEChMOVmVyaVNpZ24sIEluYy4xHzAdBgNVBAsT
    =
FlZlcmlTaWduIFRydXN0IE5ldHdvcmsxRjBEBgNVBAsTPXd3dy52ZXJpc2lnbi5jb20vcmVw
    =
b3NpdG9yeS9SUEEgSW5jb3JwLiBieSBSZWYuLExJQUIuTFREKGMpOTgxHjAcBgNVBAsTFVBl
    =
cnNvbmEgTm90IFZhbGlkYXRlZDE0MDIGA1UECxMrRGlnaXRhbCBJRCBDbGFzcyAxIC0gTWlj
    =
cm9zb2Z0IEZ1bGwgU2VydmljZTEUMBIGA1UEAxQLRXJpYyBQb3R0ZXIxJTAjBgkqhkiG9w0B
    =
CQEWFmVyaWNAY2VudHJhbG5leHh1cy5jb20wgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGB
    =
AMpDg6x95+1GMaT4cX7BA2ups+SAeIlbJJrE07eSVNfHOhqwPWy2VEtJ7gWL9QtBiknxW1IZ
    =
kZEFB8up+zj9DUHjz30NgjS+Vsq4XHrqb7oNTrTEEWsaG3I3cMP6nMia3QuCK6c7rMaNPAhc
    =
nIDxPw1NV2LsGZL+VqPmBv+WSWSbAgMBAAGjggEGMIIBAjAJBgNVHRMEAjAAMIGsBgNVHSAE
    =
gaQwgaEwgZ4GC2CGSAGG+EUBBwEBMIGOMCgGCCsGAQUFBwIBFhxodHRwczovL3d3dy52ZXJp
    =
c2lnbi5jb20vQ1BTMGIGCCsGAQUFBwICMFYwFRYOVmVyaVNpZ24sIEluYy4wAwIBARo9VmVy
    =
aVNpZ24ncyBDUFMgaW5jb3JwLiBieSByZWZlcmVuY2UgbGlhYi4gbHRkLiAoYyk5NyBWZXJp
    =
U2lnbjARBglghkgBhvhCAQEEBAMCB4AwMwYDVR0fBCwwKjAooCagJIYiaHR0cDovL2NybC52
    =
ZXJpc2lnbi5jb20vY2xhc3MxLmNybDANBgkqhkiG9w0BAQQFAAOBgQBZSuHMNgfaRQa3hwoh
    =
12k0Himx4B9YNOHA/L1DDo9zjPrDJ1AyNFu+bDomWzX3eD8irlMTGK630SgyT5+957yXVnaj
    =
vfiJXE1qbBavrSRoClAG6v6U4b0D69khrbWc0ufPWZVpzqwfdihDczkhrYksLiuMt9q+D6xe
    PG8fWxsApA=3D=3D


EMAIL;PREF;INTERNET:eric@centralnexxus.com
REV:20011204T204741Z
END:VCARD

------=_NextPart_000_00F2_01C17CC1.DCC2C990--