![]() |
![]()
| ![]() |
![]()
NAMEpreludedb-admin - tool to copy, move, delete, save or restore a prelude database SYNOPSISpreludedb-admin copy|count|delete|load|move|optimize|save|update arguments DESCRIPTIONpreludedb-admin can be used to copy, move, delete, save, update or restore a Prelude database, partly or in whole, while preserving IDMEF data consistency. Mandatory arguments
Running a command without providing arguments will display a detailed help. EXAMPLESObtaining help on a specific command: # preludedb-admin save Usage : save <alert|heartbeat> <database> <filename> [options] Example: preludedb-admin save alert "type=mysql name=dbname user=prelude" outputfile Save messages from <database> into [filename]. If no filename argument is provided, data will be written to standard output. Database arguments: Preludedb-admin can be useful to delete events from a prelude database : preludedb-admin delete alert --criteria <criteria> "type=<mysql> name=<dbname> user=<prelude-user> pass=<pass>" where criteria is an IDMEF criteria : preludedb-admin delete alert --criteria "alert.classification.text == 'UDP packet dropped'" "type=mysql name=prelude user=prelude-user pass=prelude-pass" This will delete all event with the classification text "UDP packet dropped" from the database. SEE ALSOThe Prelude Handbook: https://www.prelude-siem.org/projects/prelude/wiki/ManualUser Prelude homepage: http://www.prelude-siem.com/ Creating filter using IDMEF Criteria: https://www.prelude-siem.org/projects/prelude/wiki/IDMEFCriteria Prelude IDMEF Path: https://www.prelude-siem.org/projects/prelude/wiki/IDMEFPath BUGSTo report a bug, please visit https://www.prelude-siem.org/ AUTHORThis manpage was Written by Pierre Chifflier. COPYRIGHTCopyright © 2006-2020 CS GROUP - France.
|