Snort mailing list archives

Error 404 when fetching https://www.snort.org/downloads/registered/snortrules-snapshot-2962.tar.gz.md5


From: Brian Diehl <BDiehl () christensenfarms com>
Date: Thu, 30 Apr 2015 14:25:26 +0000

Hello,

I only occasionally update my rules files on my Snort Scanner.  I'm running on a Ubuntu install.  I'm now getting the 
following errors:

bdiehl@ubuntu2:~/Downloads/pulledpork-0.7.0$ sudo  ./pulledpork.pl -c etc/pulledpork.conf

    http://code.google.com/p/pulledpork/
      _____ ____
     `----,\    )
      `--==\\  /    PulledPork v0.7.0 - Swine Flu!
       `--==\\/
     .-~~~~-.Y|\\_  Copyright (C) 2009-2013 JJ Cummings
  @_/        /  66\_  cummingsj () gmail com
    |    \   \   _(")
     \   /-| ||'--'  Rules give me wings!
      \_\  \_\\
 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Config File Variable Debug etc/pulledpork.conf
        snort_path = /usr/local/bin/snort
        black_list = /etc/snort/rules/black_list.rules
        IPRVersion = /etc/snort/rules/iplists
        rule_path = /etc/snort/rules/snort.rules
        ignore = deleted.rules,experimental.rules,local.rules
        snort_control = /usr/local/bin/snort_control
        rule_url = ARRAY(0x2f616e8)
        sid_msg_version = 1
        sid_changelog = /var/log/sid_changes.log
        sid_msg = /etc/snort/sid-msg.map
        config_path = /etc/snort/snort.conf
        temp_path = /tmp
        distro = Ubuntu-10-4
        sorule_path = /usr/local/lib/snort_dynamicrules/
        version = 0.7.0
        local_rules = /etc/snort/rules/local.rules
MISC (CLI and Autovar) Variable Debug:
        arch Def is: x86-64
        Config Path is: etc/pulledpork.conf
        Distro Def is: Ubuntu-10-4
        Disabled policy specified
        local.rules path is: /etc/snort/rules/local.rules
        Rules file is: /etc/snort/rules/snort.rules
        sid changes will be logged to: /var/log/sid_changes.log
        sid-msg.map Output Path is: /etc/snort/sid-msg.map
        Snort Version is: 2.9.6.2
        Snort Config File: /etc/snort/snort.conf
        Snort Path is: /usr/local/bin/snort
        SO Output Path is: /usr/local/lib/snort_dynamicrules/
        Will process SO rules
        Extra Verbose Flag is Set
        Verbose Flag is Set
        Base URL is: 
https://www.snort.org/downloads/registered/|snortrules-snapshot.tar.gz|f3242df71d4050bf9e7dd67f4d3f7f4c2e70d457 
https://s3.amazonaws.com/snort-org/www/rules/community/|community-rules.tar.gz|Community 
http://labs.snort.org/feeds/ip-filter.blf|IPBLACKLIST|open 
https://www.snort.org/downloads/registered/|opensource.gz|f3242df71d4050bf9e7dd67f4d3f7f4c2e70d457 
https://rules.emergingthreatspro.com/|emerging.rules.tar.gz|open
Checking latest MD5 for snortrules-snapshot-2962.tar.gz....
        Fetching md5sum for: snortrules-snapshot-2962.tar.gz.md5
** GET 
https://www.snort.org/downloads/registered/snortrules-snapshot-2962.tar.gz.md5/f3242df71d4050bf9e7dd67f4d3f7f4c2e70d457 
==> 404 Not Found (1s)
        A 404 error occurred, please verify your filenames and urls for your tarball!
        Error 404 when fetching https://www.snort.org/downloads/registered/snortrules-snapshot-2962.tar.gz.md5 at 
./pulledpork.pl line 465
        main::md5file('f3242df71d4050bf9e7dd67f4d3f7f4c2e70d457', 'snortrules-snapshot-2962.tar.gz', '/tmp/', 
'https://www.snort.org/downloads/registered/&apos;) called at ./pulledpork.pl line 1849

When I go out to the downloads page I see that all the md5 rules are now combined down into one MD5 file.  However, 
pulledpork doesn't know about this.  I checked the pulledpork download page and version 0.7.0 is still the current 
version.  What is the correct solution to this problem?

Thanks in advance.

Brian Diehl
Christensen Farms IT Manager
Phone: 507-794-8585



------------------------------------------------------------------------------
One dashboard for servers and applications across Physical-Virtual-Cloud 
Widest out-of-the-box monitoring support with 50+ applications
Performance metrics, stats and reports that give you Actionable Insights
Deep dive visibility with transaction tracing using APM Insight.
http://ad.doubleclick.net/ddm/clk/290420510;117567292;y
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: