About this question
I am reading some snort logs from a firewall, I could read some with "snort -r file"
But when I had tried the newest logs I get this error:
snort -r snort.log
Running in packet dump mode
--== Initializing Snort ==--
Initializing Output Plugins! pcap DAQ configured to read-file.
ERROR: Can't initialize DAQ pcap (-1) - unknown file format
Fatal Error, Quitting..
Probably the snort is running in NIDS mode, I don't know, I have barnyard into this system if help. Is there any material to help me understand and troubleshoot this problem?