Re: [Prelude Hybrid IDS] #299: TLS error with OSSEC
"Prelude Hybrid IDS" <[email protected]>
| Newsgroups | gmane.comp.security.ids.prelude.devel |
|---|---|
| Message-ID | <[email protected]> |
#299: TLS error with OSSEC
-----------------------------+----------------------------------------------
Reporter: atdt911 | Owner:
Type: defect | Status: new
Priority: normal | Milestone:
Component: prelude-manager | Version: 0.9
Severity: normal | Resolution:
Keywords: |
-----------------------------+----------------------------------------------
Comment(by atdt911):
just to make clear : I run all sensors (ossec server,snort,prelude-lml) on
the same machine as prelude.
summary of behavior with gnutls 2.0.4 & default openbsd 4.3 packages of
prelude.
1. ossec reponse when communicating with prelude-manager is "ossec-
analysisd :prelude-client: Unable to initialize prelude client: TLS
handshake failed: Could not negotiate a supported compression method.."
2. prelude-manager side says: "TLS error: A TLS packet with unexpected
length was received" and then prelude-manager closes the connection.
3. i can confirm prelude-lml & snort working, both were installed prior to
ossec.
I will run the prelude-admin command tomorrow (when ill be in front of the
computer) and provide the input.
Thanks for your help!
--
Ticket URL: <https://trac.prelude-ids.org/ticket/299#comment:8>
Prelude Hybrid IDS <http://www.prelude-ids.org>
The Prelude Hybrid Intrusion Detection System suite
_______________________________________________
Prelude-devel site list
[email protected]
http://lists.prelude-ids.org/mailman/listinfo/prelude-devel