Snort mailing list archives

WARNING: Can't extract timestamp extension from 'snort.unified2 limit 128.1373443078'using base 'snort.unified2'


From: Kaushal Shriyan <kaushalshriyan () gmail com>
Date: Thu, 11 Jul 2013 16:54:36 +0530

Hi,

I am running snort version 2.9.5 and barnyard2 version 2.1.13 on CentOS
6.4. Below are the details of the snort and barnyard2 versions running on
the box.

*# /usr/sbin/snort --version*

   ,,_     -*> Snort! <*-
  o"  )~   Version 2.9.5 GRE (Build 103)
   ''''    By Martin Roesch & The Snort Team:
http://www.snort.org/snort/snort-team
           Copyright (C) 1998-2013 Sourcefire, Inc., et al.
           Using libpcap version 1.0.0
           Using PCRE version: 7.8 2008-09-05
           Using ZLIB version: 1.2.3

*# /usr/bin/barnyard2 --version*

  ______   -*> Barnyard2 <*-
 / ,,_  \  Version 2.1.13 (Build 327)
 |o"  )~|  By Ian Firns (SecurixLive): http://www.securixlive.com/
 + '''' +  (C) Copyright 2008-2013 Ian Firns <firnsy () securixlive com>
#

I am getting lot of messages in messages file "WARNING: Can't extract
timestamp extension from 'snort.unified2 limit 128.1373443078'using base
'snort.unified2'"

Jul 11 16:49:21 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373443078'using base
'snort.unified2'
Jul 11 16:49:21 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373492825'using base
'snort.unified2'
Jul 11 16:49:22 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373443078'using base
'snort.unified2'
Jul 11 16:49:22 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373492825'using base
'snort.unified2'
Jul 11 16:49:23 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373443078'using base
'snort.unified2'
Jul 11 16:49:23 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373492825'using base
'snort.unified2'
Jul 11 16:49:24 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373443078'using base
'snort.unified2'
Jul 11 16:49:24 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373492825'using base
'snort.unified2'
Jul 11 16:49:25 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373443078'using base
'snort.unified2'
Jul 11 16:49:25 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373492825'using base
'snort.unified2'
Jul 11 16:49:26 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373443078'using base
'snort.unified2'
Jul 11 16:49:26 snort snort[17849]: WARNING: Can't extract timestamp
extension from 'snort.unified2 limit 128.1373492825'using base
'snort.unified2

Any clue? Please let me know if anyone needs snort IDS and barnyard2
configuration files.

Regards,

Kaushal
------------------------------------------------------------------------------
See everything from the browser to the database with AppDynamics
Get end-to-end visibility with application monitoring from AppDynamics
Isolate bottlenecks and diagnose root cause in seconds.
Start your free trial of AppDynamics Pro today!
http://pubads.g.doubleclick.net/gampad/clk?id=48808831&iu=/4140/ostg.clktrk
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: