TLS Certificate Registration Problem

"Kaplan, Michael A" <[email protected]> Tue, 30 Nov 2010 12:18:34 -0500
Newsgroups gmane.comp.security.ids.prelude.devel
Message-ID <563593148DD9A040B93397F642B3C12558C5337FC7@rrc-dte-exmb1.dte.telcordia.com>
I am installing Prelude-Manager and Snort on some FC14 machines. Prelude Manager runs on one server, snort runs on all servers. I am having trouble connecting the remote snort sensors to the central prelude manager. I perform the TLS registration process, and in the end I see the "Authentication Succeeded" and "Sensor Successfully Registered" messages. So everything at first seems fine.

However, then when I actually run the sensor (snort), I get "Error: prelude-client: Unable to initialize prelude client: TLSserver certificate is not yet activated". At the Prelude Manager I see "TLS fatal alert from peer: Certificate is bad." The sensor asks me to rerun prelude-admin register...etc. since "profile does not exist." I tried rerunning this command, copying and pasting the requested command.

I have done this set up before (though with FC12) and things worked just fine. Any suggestions?

Mike

|---------------------------------|
|  Michael Kaplan                 |
|  Sr. Research Scientist         |
|  Telcordia Technologies, Inc.   |
|  Piscataway, NJ                 |
|  Phone: 732-699-3805            |
|  Email: [email protected]<mailto:[email protected]>   |
|---------------------------------|

_______________________________________________
Prelude-devel site list
[email protected]
http://lists.prelude-technologies.com/mailman/listinfo/prelude-devel