Snort mailing list archives

Re: Port scanning and dos detection


From: Marcin Dulak via Snort-users <snort-users () lists snort org>
Date: Sun, 13 Aug 2017 21:49:06 +0200

Hi,

I can only offer the same advice as in
https://lists.snort.org/pipermail/snort-users/2017-August/070625.html -
google the error first, and you will find
http://seclists.org/snort/2012/q3/60

"You are attemping to log in Ascii mode when you have ipv6 on your network.
And afaik, you can't create a directory in

Windows with a colon in the name.

So, I'd suggest logging in a different method. -b perhaps?

"


By the way, please don't forget to post the solution to your previous
question at https://lists.snort.org/pipermail/snort-users/2017-August/070624.html


Marcin


On Sun, Aug 13, 2017 at 9:31 PM, Sumit Balodi via Snort-users <
snort-users () lists snort org> wrote:

Hello
how can i use snort for port scanning and dos detection..and i have been
trying to detect port scanning from other network it does not show anthing
expect this error :- ERROR: OpenLogFile() => mkdir(c:\snort\log/fe80:0000:0000:0000:0000:ffff:ffff:fffe)
log directory: Invalid argument
Fatal Error, Quitting..

Command which i am using is :- c:\Snort\bin>snort -c
c:\snort\etc\snort.conf -l c:\snort\log -i2 -K ascii

looking forward for a solution

Thank you


_______________________________________________
Snort-users mailing list
Snort-users () lists snort org
Go to this URL to change user options or unsubscribe:
https://lists.snort.org/mailman/listinfo/snort-users

Please visit http://blog.snort.org to stay current on all the latest
Snort news!


_______________________________________________
Snort-users mailing list
Snort-users () lists snort org
Go to this URL to change user options or unsubscribe:
https://lists.snort.org/mailman/listinfo/snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

Current thread: