Has anyone had any problems with
Psad and Gentoo.
I used Psad on Slackware sometime back, and never had any "problems", now with Gentoo werid things seem to be happening. I have configured psad the exact way as I did on slackware(internal subnet mask, etc) and I have followed the steps you need to take with adding rules/chains to iptables.
The "werid" problems would fit into this category:
1. nmap localhost - psad takes that as offensive
2. nmap from outside - psad dose nothing, well *sometimes* which can be kinda a pain
3. nmap localhost - psad sends about a million emails to the "alert" address
This never happened on slackware.
Anyone maybe having the same "werid" problems