Re: [Prelude Hybrid IDS] #299: TLS error with OSSEC

"Prelude Hybrid IDS" <[email protected]>
Newsgroups gmane.comp.security.ids.prelude.devel
Message-ID <[email protected]>
#299: TLS error with OSSEC
-----------------------------+----------------------------------------------
 Reporter:  atdt911          |        Owner:     
     Type:  defect           |       Status:  new
 Priority:  normal           |    Milestone:     
Component:  prelude-manager  |      Version:  0.9
 Severity:  normal           |   Resolution:     
 Keywords:                   |  
-----------------------------+----------------------------------------------

Comment(by atdt911):

 just to make clear : I run all sensors (ossec server,snort,prelude-lml) on
 the same machine as prelude.

 summary of behavior with gnutls 2.0.4 & default openbsd 4.3 packages of
 prelude.

 1. ossec reponse when communicating with prelude-manager is "ossec-
 analysisd :prelude-client: Unable to initialize prelude client: TLS
 handshake failed: Could not negotiate a supported compression method.."

 2. prelude-manager side says: "TLS error: A TLS packet with unexpected
 length was received" and then prelude-manager closes the connection.

 3. i can confirm prelude-lml & snort working, both were installed prior to
 ossec.

 I will run the prelude-admin command tomorrow (when ill be in front of the
 computer) and provide the input.

 Thanks for your help!

-- 
Ticket URL: <https://trac.prelude-ids.org/ticket/299#comment:8>
Prelude Hybrid IDS <http://www.prelude-ids.org>
The Prelude Hybrid Intrusion Detection System suite
_______________________________________________
Prelude-devel site list
[email protected]
http://lists.prelude-ids.org/mailman/listinfo/prelude-devel
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.