An engineer wants to review the packet overviews of SNORT alerts. When printing the SNORT alerts, all the packet headers are included, and the file is too large to utilize. Which action is needed to correct this problem?
A. Modify the alert rule to ג€output alert_syslog: output logג€
B. Modify the output module rule to ג€output alert_quick: output filenameג€
C. Modify the alert rule to ג€output alert_syslog: output headerג€
D. Modify the output module rule to ג€output alert_fast: output filenameג€
An engineer wants to review the packet overviews of SNORT alerts. When printing the SNORT alerts, all the packet headers
-
answerhappygod
- Site Admin
- Posts: 899604
- Joined: Mon Aug 02, 2021 8:13 am
An engineer wants to review the packet overviews of SNORT alerts. When printing the SNORT alerts, all the packet headers
Join a community of subject matter experts. Register for FREE to view solutions, replies, and use search function. Request answer by replying!