How to Read Snort Alerts
- 1). Boot the Snort program from your programs list. Once the program boots, it will immediately grab packets.
- 2). Load the “Terminal” from the programs menu on your system.
- 3). Type “tcpdump –rsnort.log.xxx” into the Terminal and press “Enter.”
- 4). Wait for the log to export to your desktop.
Source...