Re: snort.lua broken thus pulledpork doesn't discover snort
Joel Esler via Snort-users <[email protected]>
| Newsgroups | gmane.comp.security.ids.snort.general |
|---|---|
| Message-ID | <[email protected]> |
You have two different problems. I suggest you read your error messages. — Sent from my iPhone > On Jun 24, 2022, at 17:35, Dorian ROSSE via Snort-users <[email protected]> wrote: > > > hello, > > > snort.lua broken thus pulledpork doesn't discover snort : > ~/snort_src/pulledpork-master$ sudo /usr/local/bin/pulledpork.pl -c /usr/local/etc/pulledpork/pulledpork.conf -l -P -E -T > > https://github.com/shirkdog/pulledpork > _____ ____ > `----,\ ) > `--==\\ / PulledPork v0.8.0 - The only positive thing to come out of 2020...well this and take-out liquor! > `--==\\/ > .-~~~~-.Y|\\_ Copyright (C) 2009-2021 JJ Cummings, Michael Shirk > @_/ / 66\_ and the PulledPork Team! > | \ \ _(") > \ /-| ||'--' Rules give me wings! > \_\ \_\\ > ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ > > Use of uninitialized value $Value in pattern match (m//) at /usr/local/bin/pulledpork.pl line 167, <CONFIG> line 20. > readline() on closed filehandle FH at /usr/local/bin/pulledpork.pl line 1647. > Use of uninitialized value $Snort in ord at /usr/local/bin/pulledpork.pl line 1924. > You need to define an oinkcode, please review the rule_url section of the pulledpork config file! > at /usr/local/bin/pulledpork.pl line 2121. > ''' > > '''sudo /usr/local/bin/snort -V > sudo: /usr/local/bin/snort : commande introuvable''' > > '''snort -c /usr/local/etc/snort/snort.lua > Running in IDS mode > > --== Initializing Snort ==-- > Initializing Output Plugins! > Initializing Preprocessors! > Initializing Plug-ins! > Parsing Rules file "/usr/local/etc/snort/snort.lua" > ERROR: /usr/local/etc/snort/snort.lua(1) Invalid configuration line: --------------------------------------------------------------------------- > > Fatal Error, Quitting.. > ''' > > thanks you in advance to help myself fully install snort and pulledpork for sanitize my network, > > regards. > > > dorian rosse. > > _______________________________________________ > Snort-users mailing list > [email protected] > Go to this URL to change user options or unsubscribe: > https://lists.snort.org/mailman/listinfo/snort-users > > To unsubscribe, send an email to: > [email protected] > > Please visit http://blog.snort.org to stay current on all the latest Snort news! > > Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette _______________________________________________ Snort-users mailing list [email protected] Go to this URL to change user options or unsubscribe: https://lists.snort.org/mailman/listinfo/snort-users To unsubscribe, send an email to: [email protected] Please visit http://blog.snort.org to stay current on all the latest Snort news! Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette