Honeypots mailing list archives

Sebek logging tool


From: Gereon Volker <gvolker () freenet de>
Date: 23 Mar 2003 17:06:08 -0000



Hi,

I'm trying to get the sebek tool working.

Both machines are running under SuSE 8.1 (2.4.19, with all available 
patches from the SuSE server). The building of the two installation 
tarballs succeeded, although there were many warnings.

After executing the configured sebek.sh script on one machine everything 
seems to work fine (no error messages). ngrep shows lots of encrypted 
packets with always the same payload.

Executing the sebeksniff program on the other machine works also fine but 
nothing is recorded after entering a few commands on the "sebek-client" 
machine (the traffic is always the same).

I have checked all settings more than twice (port, key, etc.)

Any ideas?

Thank you,

Gereon Volker


Current thread: