Issues with forwarding barnyard2 logs to an external syslog server
-
I only get a sample log like such to my syslog server from using the barnyard2
May 31 01:42:38 pfsense.rando.local nginx: 10.0.0.3 - - [31/May/2017:01:42:38 +0000] "GET /css/pfSense.css HTTP/1.1" 200 7239 "https://10.0.0.1/snort/snort_barnyard.php?id=0" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36"
I don't actually get the snort alerts…if I turn it to log to the pfsense system log, it works fine but I want it to be a separate log.
Any suggestions on why I might be getting only sample logs rather then the alerts from snort?
-
bump … .any help please!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.