LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-04-2004, 03:30 PM   #1
monroetech
Member
 
Registered: Nov 2004
Location: Toledo, OH
Distribution: SuSE 9.2 Pro
Posts: 53

Rep: Reputation: 15
snort problem


I updated my snort rules and snort.conf with the newest version...

Now my snort will not start, I checked my /var/log/messages and this is the error I see

Dec 4 15:24:07 www snort: FATAL ERROR: unknown preprocessor "^P\233 ^Hrtscan"

Problem is it's truncating so I cant do an exact search in my snort.conf

Anyone run across this error and know how I can fix it?

Thanks
 
Old 12-04-2004, 05:26 PM   #2
linux_terror
Member
 
Registered: Aug 2004
Location: Northbrook, Illinois
Distribution: CentOS-5
Posts: 311

Rep: Reputation: 30
you might see what
Code:
snort -c /path/to/snort.conf
has to say.

linux_terror
 
Old 12-05-2004, 06:10 AM   #3
monroetech
Member
 
Registered: Nov 2004
Location: Toledo, OH
Distribution: SuSE 9.2 Pro
Posts: 53

Original Poster
Rep: Reputation: 15
Ok, I fixed that problem....

Now I'm getting this error

ERROR: Warning: /etc/snort/exploit.rules(79) => Unknown keyword ' asn1' in rule!

almost all the rules reference ans1 in them..... bah
 
Old 12-05-2004, 02:54 PM   #4
monroetech
Member
 
Registered: Nov 2004
Location: Toledo, OH
Distribution: SuSE 9.2 Pro
Posts: 53

Original Poster
Rep: Reputation: 15
See this is what I get for working on things after 36 hours of no sleep

The problem was fixed by installing the CORRECT rule sets for my Snort Version....

Thanks for the assistance....
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Snort alert Problem bharathvn Linux - Security 9 11-21-2005 09:24 AM
Error when starting up snort: bash:!/bin/sh/usr/local/bin/snort :Eent not found cynthia_thomas Linux - Software 1 11-11-2005 03:59 PM
snort runlevel problem Shaper Linux - Security 1 12-23-2004 04:06 AM
Snort 2.05 and guardian 1.6 problem mikmok Linux - Security 7 12-23-2003 11:45 AM
yet another snort problem PixelCloud Linux - Security 0 08-12-2003 02:27 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:16 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration