Snort messages filling System / General. Should have its own log.
I'm running 2.3.4. Snort is completely burying other messages in System / General. It should have its own log.
#1 Updated by Bill Meeks over 2 years ago
Do you have it configured to log alerts to the system log? Otherwise, it does not put too much info into the system log other than some messages from the scheduled rule updates. Logging alerts to the sytem log is not the best idea because that can cause a lot of stuff in the log. Better to use Barnyard2 and either its remote syslog option or one of the SQL DB options there.