Database and sguil support.
Saturday, May 31st, 2008The reinvigorated barnyard code is still going strong and it has had a few new additions applied to it. Namely porting of the spo_database output plugin from Snort which provides database logging support for mysql, postgresql, MSSQL, any unixODBC and Oracle. Also initial porting of the sguil output plugin as well. These are still in the experiemental stage and will take a few weeks to get some soak testing.
We know these to plugins are essential to make this worth testing so we look forward to any feedback. This may just be the time to finally upgrade to Snort 2.8+ and experiment with the unified2 file format.





