Snort mailing list archives

Re: Fwd: error in sort configuration


From: "Michael Steele" <michaels () winsnort com>
Date: Tue, 22 Nov 2016 09:05:32 -0500

You have not specified your snort.conf file in your run line

 

Kindest regards,

Michael...

 

WINSNORT.com Management Team Member

--

****************** Established ~ 2001 *******************

*          Visit Us @  <http://www.winsnort.com> http://www.winsnort.com           *

*      ~~ FREE WinIDS Snort installation guides ~~      *

*               ~~ FREE support forums ~~               *

* Snort: Open Source Network IDS -  <http://www.snort.org> http://www.snort.org *

*********************************************************

 

From: Kulamani Sethi [mailto:kulamani.sethi () gmail com] 
Sent: Tuesday, November 22, 2016 5:15 AM
To: Michael Steele <michaels () winsnort com>
Subject: Re: [Snort-users] Fwd: error in sort configuration

 

Hi Michael,

Thanks for your response. It helps me and working fine.

But one more problem, when trying to execute snort using command "C:\Snort\bin>snort -dev -i 1 -l c:\Snort\log -K 
ascii" getting below error.

 

 

==================================================================================================

.

.

.

WARNING: No preprocessors configured for policy 0.

ERROR: OpenLogFile() => mkdir(c:\Snort\log/fe80:0000:0000:0000:adc3:4205:02f5:d141) log directory: Invalid argument

Fatal Error, Quitting..

Could not set the event message file.

C:\Snort\bin>

===================================================================================================

 

I will appreciate on your help.

 

 




With best Regards,

 

Kulamani Sethi,

 

 

On Mon, Nov 21, 2016 at 6:41 PM, Michael Steele <michaels () winsnort com <mailto:michaels () winsnort com> > wrote:

You are most likely having problems with line 325, and possibly 326.

 

Snort does not bundle optional 3rd party libraries, and they need to be included when Snort is compiled

 

For Windows; line 325 is the only line that needs hashed out because we need liblzma included, and I’m not sure how to 
do that with Windows.

 

Kindest regards,

Michael...

 

WINSNORT.com Management Team Member

--

****************** Established ~ 2001 *******************

*          Visit Us @  <http://www.winsnort.com> http://www.winsnort.com           *

*      ~~ FREE WinIDS Snort installation guides ~~      *

*               ~~ FREE support forums ~~               *

* Snort: Open Source Network IDS -  <http://www.snort.org> http://www.snort.org *

*********************************************************

 

From: Kulamani Sethi [mailto:kulamani.sethi () gmail com <mailto:kulamani.sethi () gmail com> ] 
Sent: Monday, November 21, 2016 7:59 AM
To: snort-users-owner () lists sourceforge net <mailto:snort-users-owner () lists sourceforge net> ; snort-users () 
lists sourceforge net <mailto:snort-users () lists sourceforge net> 
Subject: [Snort-users] Fwd: error in sort configuration

 




With best Regards,

 

Kulamani Sethi,

Bangalore, India

Mob: 9964286962 <tel:9964286962> 

 

---------- Forwarded message ----------
From: <snort-users-owner () lists sourceforge net <mailto:snort-users-owner () lists sourceforge net> >
Date: Mon, Nov 21, 2016 at 6:19 PM
Subject: error in sort configuration
To: kulamani.sethi () gmail com <mailto:kulamani.sethi () gmail com> 


Please subscribe to the list in order to post.



---------- Forwarded message ----------
From: Kulamani Sethi <kulamani.sethi () gmail com <mailto:kulamani.sethi () gmail com> >
To: snort-users () lists sourceforge net <mailto:snort-users () lists sourceforge net> , Srikanth Reddy 
<srikanthkumar.net () gmail com <mailto:srikanthkumar.net () gmail com> >
Cc: 
Date: Mon, 21 Nov 2016 18:19:23 +0530
Subject: error in sort configuration

 

Hi All,

 

I am a new user in snort. I successfully installed snort_2_9_8_3 and trying to configure Snort.conf file. 

 

Getting some unexpected error when executing this command "C:\Snort\bin>snort -i 1 -c c:\Snort\etc\snort.conf -A 
console" i.c: invalid keyword '}' for server configuration.

Please see below screen-shot. 

 

 



 

 




 

 

With best Regards,

 

Kulamani 

 

 

 

------------------------------------------------------------------------------
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: