problem with RecvIDMEF (C++ binding)
Jens De Wit <[email protected]> Mon, 16 May 2011 11:11:31 +0200
| Newsgroups | gmane.comp.security.ids.prelude.user |
|---|---|
| Message-ID | <[email protected]> |
Hello everyone, I'm trying to write a simple sensor that reads and processes IDMEF using the C++ easy bindings. The problem is I'm experiencing strange behaviour when calling the RecvIDMEF method: after a few calls I get the following warning "WARNING: Failover enabled: connection error with 127.0.0.1:4690: End of file", after which the sensor doens't receive anything anymore. When I restart the sensor the same happens; it reads a few messages then the warning pops up and it stops working again. Am I doing something stupid or missing something obvious here? I went through the code of the official sensors but I couldn't find any examples of using the RecvIDMEF call, except for the correlator but that's written using the Python bindings. Any help would be greatly appreciated. Regards, Jens _______________________________________________ Prelude-user site list [email protected] http://lists.prelude-technologies.com/mailman/listinfo/prelude-user