Snort mailing list archives

Re: (no subject)


From: Phil Wood <cpw () lanl gov>
Date: Wed, 11 Jul 2001 09:24:28 -0600

On Tue, Jul 10, 2001 at 08:45:00PM -0700, John Johnson wrote:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

HELP... Snort 1.8 dies with a crap load of errors and I am not understand this.

Look over the file snort.conf that comes with the distribution.  Make sure
you are referencing the proper classification.config.


- -John


1:51 linux snort: Checking PID path...
1:51 linux snort: PATH_VARRUN is set to /var/run/ on this operating system
1:51 linux snort: Initializing daemon mode
1:51 linux snortd: snort startup succeeded
1:52 linux kernel: device eth0 entered promiscuous mode
1:52 linux snort: ERROR /etc/snort/backdoor.rules(116) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(117) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(118) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(119) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(120) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(121) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(122) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(123) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(124) => Bad Priority 
setting "attempted-admin"
1:52 linux snort: ERROR /etc/snort/backdoor.rules(125) => Bad Priority 
setting "attempted-user"
1:52 linux snort: ERROR /etc/snort/dos.rules(6) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(7) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(8) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(9) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(10) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(11) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(12) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(13) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(14) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(15) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(16) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(17) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(18) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(19) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dos.rules(20) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/dns.rules(6) => Bad Priority setting 
"attempted-recon"
1:52 linux snort: ERROR /etc/snort/dns.rules(7) => Bad Priority setting 
"bad-unknown"
1:52 linux snort: ERROR /etc/snort/dns.rules(8) => Bad Priority setting 
"bad-unknown"
1:52 linux snort: ERROR /etc/snort/dns.rules(9) => Bad Priority setting 
"attempted-recon"
1:52 linux snort: ERROR /etc/snort/dns.rules(10) => Bad Priority setting 
"attempted-recon"
1:52 linux snort: ERROR /etc/snort/dns.rules(11) => Bad Priority setting 
"attempted-recon"
1:52 linux snort: ERROR /etc/snort/dns.rules(12) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(13) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(14) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(15) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(16) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(17) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(18) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(19) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(20) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/dns.rules(21) => Bad Priority setting 
"attempted-admin"
1:52 linux snort: ERROR /etc/snort/ddos.rules(6) => Bad Priority setting 
"attempted-recon"
1:52 linux snort: ERROR /etc/snort/ddos.rules(7) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(8) => Bad Priority setting 
"attempted-recon"
1:52 linux snort: ERROR /etc/snort/ddos.rules(9) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(10) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(11) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(12) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(13) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(14) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(15) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(16) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(17) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(18) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(19) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(20) => Bad Priority setting 
"bad-unknown"
1:52 linux snort: ERROR /etc/snort/ddos.rules(21) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(22) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(23) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(24) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(25) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(26) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(27) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(28) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(29) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(30) => Bad Priority setting 
"attempted-dos"
1:52 linux snort: ERROR /etc/snort/ddos.rules(31) => Bad Priority setting 
"attempted-dos"
Jul 10 20:51:52 linux snort: FATAL ERROR: [!] ERROR 
/etc/snort/exploit.rules(32) => Bad port number: "(msg:"EXPLOIT"
-----BEGIN PGP SIGNATURE-----
Version: PGP 7.0.1

iQA/AwUBO0vLuwfP+qzR55XlEQIrxACg9T5YVtrVdZWF/in/+fjgMWwr9bMAnifb
4tcvI4Xxdio8GzY5+RwmDxFv
=2z1Z
-----END PGP SIGNATURE-----



_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
http://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

-- 
Phil Wood, cpw () lanl gov


_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
http://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: