Snort mailing list archives

Re: Freebsd snorters: test port of 2.9.0.3 available


From: Joel Esler <jesler () sourcefire com>
Date: Sat, 29 Jan 2011 19:21:39 -0500

Is this something that dean can incorporate and fix in the official tree?

Or is this a one off for your box?

You'll have to excuse my limited knowledge of ports and the fact that I'm sick. 

Sent from my iPad

On Jan 29, 2011, at 5:16 PM, Michael Scheidell <michael.scheidell () secnap com> wrote:

I have an alpha (test) version of the ports files needed to make/upgrade/portinstall snort 2.9.0.3 on Freebsd 7.3+
it is NOT based on <http://www.freebsd.org/cgi/query-pr.cgi?pr=ports/153998> which I wasn't able to get to work right.
if fixes missing/misplaced preprocessor libs/and rules that have plagued the freebsd port for a long time.
adds in optional support for targetedhost (was not in 2.8.6.1 port)
make some previously optional knobs mandatory (I could not get it to compile at all without dynamicpreprocessor 
support)
installs sample decoder.* rules 
included ports libpcap, includes daq support. might even include ipfw/daq support.

actually passes snort -T -c /usr/local/etc/snort.conf-sample lint!

note: I don't think it will wipe out your current snort.conf.
as always, back up everything.

if anyone wants it, email me and I will send you the tarball, which replaces /usr/ports/security/snort/ Makefile,... 
distfiles, ../ etc.

note: snortsam is NOT in this yet.  so if you want snortsam and snort, stay with 2.8.6.1
-- 
Michael Scheidell, CTO
o: 561-999-5000
d: 561-948-2259
ISN: 1259*1300
| SECNAP Network Security Corporation
Certified SNORT Integrator
2008-9 Hot Company Award Winner, World Executive Alliance
Five-Star Partner Program 2009, VARBusiness
Best in Email Security,2010: Network Products Guide
King of Spam Filters, SC Magazine 2008

This email has been scanned and certified safe by SpammerTrap®. 
For Information please see http://www.secnap.com/products/spammertrap/


------------------------------------------------------------------------------
Special Offer-- Download ArcSight Logger for FREE (a $49 USD value)!
Finally, a world-class log management solution at an even better price-free!
Download using promo code Free_Logger_4_Dev2Dev. Offer expires 
February 28th, so secure your free ArcSight Logger TODAY! 
http://p.sf.net/sfu/arcsight-sfd2d
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users
------------------------------------------------------------------------------
Special Offer-- Download ArcSight Logger for FREE (a $49 USD value)!
Finally, a world-class log management solution at an even better price-free!
Download using promo code Free_Logger_4_Dev2Dev. Offer expires 
February 28th, so secure your free ArcSight Logger TODAY! 
http://p.sf.net/sfu/arcsight-sfd2d
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

Current thread: