Snort - the de facto standard for intrusion detection/prevention
next up previous
Next: 3.11 Why are there Up: 3 Configuring Snort Previous: 3.9 How do I

3.10 How do I get Snort to log the packet payload as well as the header?

It depends on how your Snort configuration logs. If it logs in binary format, you'll have to process the binary log in order to get cleartext. You also might have ``-A $<$foo$>$'' on the command line. Command line options always take override the .conf file.



Nigel Houghton 2006-10-02