Barnyard2 Config to Show Payload in ASCII to Remote Syslog?
dc401 last edited by
Running 2.1 x64 – barnyard2 configuration works fine when alerts in default and complete settings.
Tried to add the following barnyard2.conf to be inserted from the WebUI"
output log_syslog_full: sensor_name snort-sensor, local, operation_mode complete
However when I funnel traffic to the interface that Snort is running on; I see only the alerts still and none of the payload. Has anyone been able to successfully get this to work? We want to be able to get the alert + payload sent to a remote syslog server.