Snort mailing list archives

I'm tired from snort!!


From: Ahmed Qaisi <qaisi.ahmed () gmail com>
Date: Tue, 26 Oct 2010 21:42:06 +1300

Any help??

when I uncomment the database plugin in the snort.conf file, I keep getting
this error ...

sudo /usr/local/snort/bin/snort -u snort -g snort -c
/usr/local/snort/etc/snort.conf -i eth1
Running in IDS mode
        --== Initializing Snort ==--
Initializing Output Plugins!
Initializing Preprocessors!
Initializing Plug-ins!
Parsing Rules file "/usr/local/snort/etc/snort.conf"
PortVar 'HTTP_PORTS' defined :  [ 80 1220 2301 3128 7777 7779 8000 8008 8028
8080 8180 8888 9999 ]
PortVar 'SHELLCODE_PORTS' defined :  [ 0:79 81:65535 ]
PortVar 'ORACLE_PORTS' defined :  [ 1024:65535 ]
PortVar 'SSH_PORTS' defined :  [ 22 ]
Detection:
   Search-Method = AC-Full-Q
    Split Any/Any group = enabled
    Search-Method-Optimizations = enabled
    Maximum pattern length = 20
Tagged Packet Limit: 256
Loading dynamic engine
/usr/local/snort/lib/snort_dynamicengine/libsf_engine.so... done
Loading all dynamic detection libs from
/usr/local/snort/lib/snort_dynamicrules...
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/chat.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/netbios.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/nntp.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/icmp.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/exploit.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/smtp.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/dos.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/web-activex.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/bad-traffic.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/multimedia.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/misc.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/p2p.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/web-misc.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/pop3.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/web-iis.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/imap.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/web-client.so... done
  Loading dynamic detection library
/usr/local/snort/lib/snort_dynamicrules/sql.so... done
  Finished Loading all dynamic detection libs from
/usr/local/snort/lib/snort_dynamicrules
Loading all dynamic preprocessor libs from
/usr/local/snort/lib/snort_dynamicpreprocessor...
  Loading dynamic preprocessor library
/usr/local/snort/lib/snort_dynamicpreprocessor/libsf_smtp_preproc.so... done
  Loading dynamic preprocessor library
/usr/local/snort/lib/snort_dynamicpreprocessor/libsf_dns_preproc.so... done
  Loading dynamic preprocessor library
/usr/local/snort/lib/snort_dynamicpreprocessor/libsf_ssh_preproc.so... done
  Loading dynamic preprocessor library
/usr/local/snort/lib/snort_dynamicpreprocessor/libsf_dce2_preproc.so... done
  Loading dynamic preprocessor library
/usr/local/snort/lib/snort_dynamicpreprocessor/libsf_sdf_preproc.so... done
  Loading dynamic preprocessor library
/usr/local/snort/lib/snort_dynamicpreprocessor/libsf_ftptelnet_preproc.so...
done
  Loading dynamic preprocessor library
/usr/local/snort/lib/snort_dynamicpreprocessor/libsf_ssl_preproc.so... done
  Loading dynamic preprocessor library
/usr/local/snort/lib/snort_dynamicpreprocessor/libsf_dcerpc_preproc.so...
done
  Finished Loading all dynamic preprocessor libs from
/usr/local/snort/lib/snort_dynamicpreprocessor
Log directory = /var/log/snort
database: 'mysql' support is not compiled into this build of snort
ERROR: If this build of snort was obtained as a binary distribution (e.g.,
rpm,
or Windows), then check for alternate builds that contains the necessary
'mysql' support.
*If this build of snort was compiled by you, then re-run the
the ./configure script using the '--with-mysql' switch.
For non-standard installations of a database, the '--with-mysql=DIR'
syntax may need to be used to specify the base directory of the DB install.*
*See the database documentation for cursory details (doc/README.database).
and the URL to the most recent database plugin documentation.
Fatal Error, Quitting..*

I did compile it again and again. I did create tables. I did remove the
whole installation and installed every thing again. I AM SICK OF IT.

Any help please.

Thank you
Ahmed
------------------------------------------------------------------------------
Nokia and AT&T present the 2010 Calling All Innovators-North America contest
Create new apps & games for the Nokia N8 for consumers in  U.S. and Canada
$10 million total in prizes - $4M cash, 500 devices, nearly $6M in marketing
Develop with Nokia Qt SDK, Web Runtime, or Java and Publish to Ovi Store 
http://p.sf.net/sfu/nokia-dev2dev
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Current thread: