Snort mailing list archives

Re: Rule sets are empty sets


From: "Joel Esler \(jesler\) via Snort-sigs" <snort-sigs () lists snort org>
Date: Tue, 13 Oct 2020 13:09:40 +0000

Mark,

Some of the rule files are empty and are no longer used.  This is normal.

-- 
Joel Esler
Manager, Communities Division
Cisco Talos Intelligence Group
http://www.talosintelligence.com | https://www.snort.org

On Oct 11, 2020, at 3:06 PM, Mark Bishop via Snort-sigs <snort-sigs () lists snort org> wrote:

Hello,

I am a Netgate Suricata user, which allows me to use Snort v2 rules

Recently I subscribed to the Snort Rule Set and, upon inspection, I find many of the rule categories have no rules. 
For example, the snort_blacklist.rules contain no riles.

When I update the rule sets I get confirmation that the update was successful. 

I suspect I have a configuration problem. Does anyone have any ideas on how to trouble shoot my problem?
 
_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!

Attachment: smime.p7s
Description:

_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!

Current thread: