2.6.1 alert_syslog

This module sends alerts to the syslog facility (much like the -s command line switch). This module also allows the user to specify the logging facility and priority within the Snort config file, giving users greater flexibility in logging alerts.

2.6.1.1 Available Keywords

2.6.1.1.1 Facilities

2.6.1.1.2 Priorities

2.6.1.1.3 Options

2.6.1.2 Format

verbatim516#

rawhtml155#

As WIN32 does not run syslog servers locally by default, a hostname and port can be passed as options. The default host is 127.0.0.1. The default port is 514.

rawhtml156#

verbatim517#

2.6.1.3 Example

verbatim518#