亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频

? 歡迎來到蟲蟲下載站! | ?? 資源下載 ?? 資源專輯 ?? 關于我們
? 蟲蟲下載站

?? faq

?? 入侵檢測系統.linux下與MySql連用的例子
??
?? 第 1 頁 / 共 5 頁
字號:
   packets as efficiently as possible with as few interruptions   as possible, imho, and not be invoking the penalty of   process invocation.... particularly on Windows where   process invocation is much much heavier task than *nix.   Even in a secondary process... You'll probably find   something that stays "awake" all the time will work out   much more nicely than something that gets "woken up"   on a per alert basis for the aforementioned reasons.     As a better alternative go check out swatch or logwatch.--faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--***************************************Section 6: PROBLEMS***************************************6.1 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q:  I think I found a bug in snort. Now what?A:  get some more diagnostic information and post it to "snort-users" at    http://www.sourceforge.net    To get diagnostic information compile snort as either:	make clean; make CFLAGS=-ggdb	or	make clean; make "CFLAGS=-ggdb -DDEBUG"    trace coredump as:	gdb /path/to/snort /path/to/snort/core	gdb> where	gdb> bt	gdb> print $varname, varname, $$varname etc..    or if corefile isn't generated snort should be started as	gdb snort	gdb> run <snort args without -D switch :-)>				6.2 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: SMB alerts aren't working, what's wrong? A: Make sure you include "--enable-smbalerts" when you run "./configure".  6.3 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: Snort says "Garbage Packet with Null Pointer discarded!". Huh?A:  This was an internal diagnostic message triggered by an old bug   in early versions of the defragmentation preprocessor.  Upgrade to    to the latest version of snort.6.4 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: Snort says "Ran Out Of Space". Huh?A:  This is an internal diagnostic message when the defragmentation    preprocessor runs into its ~32MB hard allocation space limit.    Tell Dragos about it <dr@kyx.net>.6.5 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: I'm having problems getting snort to log to a database...A: There were some issues with snort 1.6.3 writes    Lee wrote..   > > Initializing rule chains...   > > log_database: Database type is mysql   > > log_database: Database name is snort   > > log_database: Host set to localhost   > > log_database: User set to root   > > Problem obtaining SENSOR ID (sid) from mysql->snort->event   In version 1.6.3, it turns out that many people have seen this error   because they did not compile in support for their database. It should    be fixed in snort 1.7   A quick and easy "fix" for older snort versions is to add -lm to   either LIBS or LDFLAGS in the Makefile. e.g.   LIBS = -lm -lmysqlclient -lpcap -lsocket -lnsl   Anyway, if you are still having this problem you can take a look at   the updated the installation and configuration information at the   following web site.   http://www.incident.org/snortdb6.6 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: My ACID db connection times-out when performing long operations (e.g.   deleting a large number of alerts) A:  PHP has an internal variable set to limit the length an script can   execute. It is used to prevent poorly written code from executing   indefinitely. In order to modify the time-out value, examine the   'max_execution_time' variable found in the 'php.ini' configuration file.6.7 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: Why does snort report "Packet loss statistics are unavailable under Linux"?A:  The Linux IP stack doesn't report lost packet stats.  This may be changing    in version 2.4 of Linux, but for now you just don't get them.  Try one    of the BSDs, they work just fine. This also has been recently fixed with    the 2.4 kernel in the new version of libpcap... upgrade kernels and libpcap    and it should now work.6.8 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: My /var/log/snort directory get very large.....A: Try this script to archive the files.#!/bin/sh# # Logfile roation script for snort writen by jameso@elwood.net.# # This script is pretty basic. We start out by setting some vars.# Its job is tho rotate the days logfiles, e-mail you with what # it logged, keep one weeks worth of uncompressed logs, and also# keep compressed tgz files of all the logs. It is made to be run# at midnight everynight. This script expects you to have a base# dir that you keep all of your logs, rule sets etc in. You can # see what sub dirs it expects from looking at the var settings# below.# # Things to note in this script is that we run this script at 12 # every night, so we want to set the dirdate var the day the script# runs minus a day so we label the files with the correct day. We# Then create a dir for the days logs, move the log files into # todays dir. As soon as that is done restart snort so we don't miss# anything. Then delete any logs that are uncompressed and over a# week old. Then compress out todays logs and archive them away, and# end up by mailling out the logs to you.## Define where you have the base of your snort installsnortbase=/usr/snort# Define other vars# logdir   - Where the logs are kept# oldlogs  - Where you want the archived .tgz logs kept# weeklogs - This is where you want to keep a weeks worth of log files uncompressed# dirdate  - Todays Date in Month - Day - Year format# olddirdate - Todays date in the same format as dirdate, minus a weeklogdir=$snortbase/logoldlogs=$snortbase/oldlogsweeklogs=$snortbase/weeklogs# When I first wrote this script, I only ran it on BSD systems. That was a# mistake, as BSD systems have a date command that apperently lets you walk the# date back pretty easily. Well, some systems don't have this feature, so I had# to change the way that dates are done in here. I left in the old way, because# it is cleaner, and I added in a new way that should be portable. If anyone# has any problems, just let me know and I will try to fix it.## You have to change the system var to either bsd or other. Set it to bsd if# your system supports the "-v" flag. If you are not sure, set it to other.system=bsdif [ $system = bsd ]then dirdate=`date -v -1d "+%m-%d-%y"` olddirdate=`date -v -8d "+%m-%d-%y"`elif [ $system = other ] month=`date "+%m"` yesterday=`expr \`date "+%d"\` - 1` eightday=`expr \`date "+%d"\` - 8` year=`date "+%y"` dirdate=$month-$yesterday-$year olddirdate=$month-$eightday-$yearfi# Create the Dir for todays logs.if [ ! -d $weeklogs/$dirdate ]then mkdir $weeklogs/$dirdatefi# Move the log files into todays log dir. This is done with# a for loop right now, because I am afriad that if alot is# logged there may be to many items to move with a "mv *"# type command. There may a better way to do this, but I don't# know it yet.for logitem in `ls $logdir` ; do mv $logdir/$logitem $weeklogs/$dirdatedone# Kill and restart snort now that the log files are moved.kill `cat /var/run/snort_fxp0.pid`# Restart snort in the correct way for you/usr/local/bin/snort -i fxp0 -d -D -h homeiprange/28 -l /usr/snort/log \-c /usr/snort/etc/08292k.rules > /dev/null 2>&1# Delete any uncompressed log files that over a week old.if [ -d $weeklogs/$olddirdate ]then rm -r $weeklogs/$olddirdatefi# Compress and save the log files to save for as long as you want.# This is done in a sub-shell because we change dirs, and I don't want # to do that within the shell that the script runs in.(cd $weeklogs; tar zcvf $oldlogs/$dirdate.tgz $dirdate > /dev/null 2>&1)# Mail out the log files for today.cat $weeklogs/$dirdate/snort.alert | mail -s "Snort logs" you@domain.comcat $weeklogs/$dirdate/snort_portscan.log | mail -s "Snort portscan logs" you@domain.com6.9 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: Why does the 'error deleting alert' message occur when attempting to delete   an alert with ACIO? A: Most likely the DB user configure in ACID does not have sufficient   privileges. In addition to those privileges granted to log the alerts into   the database (INSERT, SELECT), DELETE is also required.    This permission related issue can be confirmed by manually inserting a row   into the database, then trying to delete it.    1. login to MySQL with the same credentials (i.e. username, password) as you      use in ACID.    e.g. % mysql  -u  -p   2. insert a test row into the event table    mysql> INSERT INTO event (sid, cid, signature, timestamp) VALUES (1,1000000, "test", "0");   (this assumes that you don't already have a row with an event ID=1000000. If    you do just choose another event id #)    3. now delete this newly inserted row    mysql> DELETE FROM event WHERE sid=1 AND cid=10000000;    If you where not able to delete, this confirms that this is a permission   problem. Re-login to mysql as root, and issue a GRANT command (giving the   DELETE permission) to the ACID DB user.    e.g. GRANT DELETE on snort.* to acid@localhost   (this assumes that my alert database is 'snort', username is 'acid', and   logging from the 'localhost') 6.10 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: ACID appears to be broken in Lynx A: This is a known issue. Lynx mangles some of the form arguments appended to   the URL. It's resolution is being investigated, but use Netscape, Opera, or   IE in the mean time. 6.11 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: I am getting 'snort [pid] uses obsolete (PF_INET, SOCK_PACKET)' warnings, what's wrong.A:  You use older libpcap version with recent linux kernel. There should be    no problem with it as long as your kernel supports SOCK_PACKET socket     type. To get rid off the warning message however, you'll have to upgrade     to some recent version of libpcap. (a copy from www.tcpdump.org is     recommended).6.12 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: on HPUX I get device lan0 open: recv_ack: promisc_phys: Invalid argumentA:  It's because there's another program running using the DLPI service.    The HP-UX implementation doesn't allow more than one libpcap program    at a time to run, unlike Linux. (from snort.c)6.13 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: I am getting snort dying with 'can not create file' error and I have    plenty of diskspace, what's wrong?A:  You may run out of free inodes, which basically also means you can not    create more files on the partition. The obvious solution is to rm some ;-)6.14 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: I am using Snort on Windows and receive an OpenPcap() error upon startup:		ERROR: OpenPcap() device open:        Error opening adapter   What's wrong?A: Either winpcap is not installed, or you are using an incompatible version.   Try upgrading to the latest version (2.1 as of 4/11/01).  It is available    from http://netgroup-serv.polito.it/winpcap/6.15 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: Snort is not logging to my databaseA1: You did not set up the database plugin in your configuration file.A2: You are using an older database schema, and should update it by running the    create scripts from the /contrib directory.A3: You are using a command line option that overrides what you have in your     configuration file.  This is most often -A or -s.  NOTE: If you wish to log    to syslog as well, specify so in your configuration file rather then the    command line.A4: There is a problem with your database configuration itself.  Make sure the    user you specify has the correct permissions, or that the database is even    up and running.6.16 --faq-- --snort-- --faq-- --snort-- --faq-- --snort-- --faq--Q: Portscans are not being logged to my da

?? 快捷鍵說明

復制代碼 Ctrl + C
搜索代碼 Ctrl + F
全屏模式 F11
切換主題 Ctrl + Shift + D
顯示快捷鍵 ?
增大字號 Ctrl + =
減小字號 Ctrl + -
亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频
91成人免费在线视频| 日韩欧美一二区| 狠狠狠色丁香婷婷综合激情 | 91免费看`日韩一区二区| 日韩精品一区第一页| 1024亚洲合集| 337p日本欧洲亚洲大胆精品| 99免费精品视频| 国产九色sp调教91| 蜜臀久久久99精品久久久久久| 亚洲男人的天堂在线aⅴ视频| 欧美不卡一区二区三区| 欧美午夜精品一区| 91在线一区二区| 大美女一区二区三区| 久久99精品国产麻豆不卡| 亚洲国产一区二区在线播放| 中文字幕一区二区三区在线播放 | 3d动漫精品啪啪一区二区竹菊| av资源网一区| 成人v精品蜜桃久久一区| 精品一区二区在线观看| 日本成人在线网站| 日日夜夜一区二区| 亚洲成av人**亚洲成av**| 日韩毛片一二三区| 国产精品不卡在线| 国产精品妹子av| 国产欧美日韩另类视频免费观看| 久久众筹精品私拍模特| 日韩免费电影网站| 欧美成人伊人久久综合网| 91 com成人网| 91精品国产福利| 欧美一区二区三区在线观看| 717成人午夜免费福利电影| 欧美美女一区二区| 欧美精品三级日韩久久| 欧美一区二区福利视频| 日韩一级二级三级| 久久综合网色—综合色88| 精品久久人人做人人爰| 26uuu亚洲| 国产精品色哟哟| 亚洲色图视频网站| 亚洲综合偷拍欧美一区色| 亚洲一区在线观看视频| 亚洲成年人网站在线观看| 日韩激情一区二区| 美脚の诱脚舐め脚责91| 国产尤物一区二区| 国产91露脸合集magnet| 99久久精品国产导航| 91福利小视频| 91精品在线观看入口| 久久亚洲精品国产精品紫薇| 日本一区二区电影| 亚洲精品乱码久久久久久| 午夜视频久久久久久| 久久国产欧美日韩精品| 国产白丝网站精品污在线入口| 成人精品免费看| 欧美在线观看视频一区二区 | 一本大道综合伊人精品热热 | 欧美国产日韩一二三区| 亚洲精品美国一| 日日噜噜夜夜狠狠视频欧美人 | 久久成人久久鬼色| 9i在线看片成人免费| 欧美主播一区二区三区美女| 欧美一区二区三区在线观看视频| 久久―日本道色综合久久| 日韩美女精品在线| 麻豆一区二区在线| 不卡一二三区首页| 91精选在线观看| 国产精品久久久久久久裸模| 亚洲一级片在线观看| 国产一区二区精品久久| 欧洲av一区二区嗯嗯嗯啊| 欧美电影免费观看高清完整版在 | 精品少妇一区二区三区在线视频| 日本一区免费视频| 日韩精品一级二级 | 一个色综合av| 精品一区二区三区日韩| 93久久精品日日躁夜夜躁欧美| 91精品蜜臀在线一区尤物| 综合久久久久久久| 久久www免费人成看片高清| 91成人在线精品| 国产欧美日韩在线| 青青草国产成人99久久| 色综合中文字幕国产 | 亚洲在线成人精品| 国产盗摄女厕一区二区三区| 欧美日韩在线直播| 国产精品国产自产拍在线| 久久国产日韩欧美精品| 欧美日韩免费观看一区二区三区| 久久天堂av综合合色蜜桃网| 亚洲国产精品久久久久秋霞影院 | 在线看一区二区| 国产日韩av一区二区| 丝袜美腿亚洲综合| 91色婷婷久久久久合中文| 久久午夜电影网| 日韩av电影免费观看高清完整版在线观看| 99热在这里有精品免费| 国产丝袜在线精品| 精品夜夜嗨av一区二区三区| 欧美精品久久一区二区三区| 亚洲品质自拍视频网站| 成人av在线播放网站| 久久久久99精品一区| 午夜不卡av免费| 欧美视频精品在线观看| 亚洲日本va午夜在线电影| 高潮精品一区videoshd| 久久五月婷婷丁香社区| 麻豆国产91在线播放| 欧美一区在线视频| 五月激情综合婷婷| 欧美日韩在线播放| 亚洲一区二区高清| 欧美在线免费播放| 亚洲福利视频三区| 欧美视频一区二区三区在线观看| 亚洲黄色录像片| 在线观看日韩电影| 亚洲韩国一区二区三区| 在线观看av一区| 亚洲香蕉伊在人在线观| 在线观看国产日韩| 亚欧色一区w666天堂| 欧美日精品一区视频| 国产裸体歌舞团一区二区| 久久综合久久综合久久| 精品一区二区三区av| 久久综合网色—综合色88| 国产成人精品1024| 国产精品色哟哟| 日本精品一区二区三区高清| 亚洲网友自拍偷拍| 欧美军同video69gay| 日本视频中文字幕一区二区三区| 欧美一区二区三区人| 久久66热偷产精品| 久久精品视频网| av电影在线观看完整版一区二区| 亚洲视频一二三区| 欧美中文字幕一区二区三区| 日韩电影免费一区| 26uuu久久综合| 97久久超碰精品国产| 亚洲国产aⅴ成人精品无吗| 在线播放国产精品二区一二区四区| 日本在线播放一区二区三区| 精品福利一区二区三区| 成人手机在线视频| 亚洲一区自拍偷拍| 精品国产区一区| 成人av网站免费观看| 亚洲福利视频一区| 亚洲精品一区二区三区99| 99在线精品一区二区三区| 亚洲电影在线免费观看| 精品国产3级a| 在线日韩av片| 韩国av一区二区三区在线观看| 国产精品白丝在线| 日韩一级大片在线| 成人美女在线观看| 日本欧美在线观看| 国产精品乱人伦中文| 91精品国产综合久久福利软件| 国产999精品久久| 亚洲图片欧美色图| 欧美激情一区在线观看| 欧美男同性恋视频网站| 成熟亚洲日本毛茸茸凸凹| 亚洲mv大片欧洲mv大片精品| 久久精品欧美一区二区三区不卡| 在线免费视频一区二区| 国产黄色成人av| 日韩在线一区二区三区| 中文字幕一区二区三区四区| 日韩视频在线一区二区| 91久久久免费一区二区| 国产精品亚洲一区二区三区在线 | 日日夜夜精品视频免费| 国产精品丝袜一区| 日韩欧美一区电影| 欧美曰成人黄网| 国产美女av一区二区三区| 午夜天堂影视香蕉久久| 亚洲人成网站精品片在线观看| 欧美不卡一区二区三区四区| 欧美探花视频资源| 91网站黄www|