Snort mailing list archives

Re: Snort not collecting data after installing pulledpork and running rules update


From: Joel Esler <jesler () sourcefire com>
Date: Tue, 12 Feb 2013 12:29:55 -0500

Looks like you've commented out all of your rules aside from these four:


On Feb 12, 2013, at 10:24 AM, Erik D. Sciortino <ESciortino () ABIM ORG> wrote:

include $RULE_PATH/deleted.rules
include $RULE_PATH/experimental.rules
include $RULE_PATH/local.rules
include $RULE_PATH/winids.rules

By default Pulledpork puts everything in a file called "snort.rules"  (at least on Unix it does).  So you'll need to 
include that.

--
Joel Esler
Senior Research Engineer, VRT
OpenSource Community Manager
Sourcefire
------------------------------------------------------------------------------
Free Next-Gen Firewall Hardware Offer
Buy your Sophos next-gen firewall before the end March 2013 
and get the hardware for free! Learn more.
http://p.sf.net/sfu/sophos-d2d-feb
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: