snort database administration

malcolm <[email protected]> Thu, 17 Jul 2003 09:19:13 +0000
Newsgroups gmane.comp.security.ids.snort.snarf
Organization Cable & Wireless
Message-ID <[email protected]>
Is there an sql script or perl script to tidy up the snort database? My
problem is is that we have about 200,000 new event records per day.
These events fill up other tables such as iphdr, acid_event etc. I would
like to delete all records from all tables which are older than 2 days.

Thank you


Malcolm Badley