Hey guys,
I'm in the process of setting up a middlebox for my cluster, and I'm trying to get snort running. When I run sudo /etc/rc.d/snort start, I get this:
Code:
:: Starting Intrusion Database System: SNORT [BUSY] Running in IDS mode
...
Initializing rule chains...
ERROR: Undefined variable name: (/etc/snort/rules/community-smtp.rules:6): SMTP_SERVERS
Fatal Error, Quitting..
I was thinking about commenting out line six but I'm not sure. Also, I use oinkmaster to update I rules. Let me know if you want to see my oinkmaster.conf or my snort.conf