Snort mailing list archives

Re: [EXT] : Snort-sigs Digest, Vol 70, Issue 3 (No such file or directory error)


From: "Al Lewis \(allewi\) via Snort-sigs" <snort-sigs () lists snort org>
Date: Thu, 2 Mar 2023 16:39:08 +0000

Missing the backslash for "c:\" ?


Albert Lewis

ENGINEER.SOFTWARE ENGINEERING

SOURCEfire, Inc. now part of Cisco

Email: allewi () cisco com<mailto:allewi () cisco com>

________________________________
From: Snort-sigs <snort-sigs-bounces () lists snort org> on behalf of Darryle Merlette via Snort-sigs <snort-sigs () 
lists snort org>
Sent: Thursday, March 2, 2023 9:19 AM
To: snort-sigs () lists snort org <snort-sigs () lists snort org>
Subject: Re: [Snort-sigs] [EXT] : Snort-sigs Digest, Vol 70, Issue 3 (No such file or directory error)

My guess is:
"c:snort\edc\snort.conf"
Should be
"c:snort\etc\snort.conf"

Hope that helps,

Darryle Merlette, CISSP        NIKSUN, Inc.
Tel: +1 770-772-1613           http://www.niksun.com
Cel: +1 908 510-3574           457 N. Harrison St.
HQ:  +1 609 936-9999 x3324     Princeton, NJ 08540 USA
___________________________________________________________________________
**** CONFIDENTIALITY NOTICE *****

This electronic mail message (and/or documents accompanying it) is the
property of NIKSUN, Inc. and may contain confidential material for the
sole use of NIKSUN and the intended recipient(s).  Any review, use,
distribution or disclosure by anyone other than an intended recipient
is strictly prohibited. If you have received this communication in
error, please contact the sender by e-mail and delete all copies of
the message.

-----Original Message-----
From: Snort-sigs <snort-sigs-bounces () lists snort org> On Behalf Of snort-sigs-request () lists snort org
Sent: Thursday, March 2, 2023 7:41 AM
To: snort-sigs () lists snort org
Subject: [EXT] : Snort-sigs Digest, Vol 70, Issue 3

WARNING :: Email source is NOT NIKSUN

Do not trust content in this email and do not open attachments or click links from an unknown or suspicious origin.

Send Snort-sigs mailing list submissions to
        snort-sigs () lists snort org

To subscribe or unsubscribe via the World Wide Web, visit
        https://lists.snort.org/mailman/listinfo/snort-sigs
or, via email, send a message with subject or body 'help' to
        snort-sigs-request () lists snort org

You can reach the person managing the list at
        snort-sigs-owner () lists snort org

When replying, please edit your Subject line so it is more specific than "Re: Contents of Snort-sigs digest..."


Today's Topics:

   1. Re: Snort Subscriber Rules Update 2023-02-28 (Al Lewis (allewi))


----------------------------------------------------------------------

Message: 1
Date: Thu, 2 Mar 2023 12:40:34 +0000
From: "Al Lewis (allewi)" <allewi () cisco com>
To: "mukesh.jha () ptronicservices com" <mukesh.jha () ptronicservices com>,
        "'Research'" <research () sourcefire com>, "snort-sigs () lists snort org"
        <snort-sigs () lists snort org>, "shesu () sourcefire com"
        <shesu () sourcefire com>
Subject: Re: [Snort-sigs] Snort Subscriber Rules Update 2023-02-28
Message-ID:
        <BL3PR11MB571530993DF7402013728A9BDAB29 () BL3PR11MB5715 namprd11 prod outlook com>

Content-Type: text/plain; charset="us-ascii"

Does that file / path exist? Does the user starting/running snort have permissions to that file?


Albert Lewis

ENGINEER.SOFTWARE ENGINEERING

SOURCEfire, Inc. now part of Cisco

Email: allewi () cisco com<mailto:allewi () cisco com>

________________________________
From: Snort-sigs <snort-sigs-bounces () lists snort org> on behalf of mukesh.jha () ptronicservices com <mukesh.jha () 
ptronicservices com>
Sent: Wednesday, March 1, 2023 2:11 AM
To: 'Research' <research () sourcefire com>; snort-sigs () lists snort org <snort-sigs () lists snort org>; shesu () 
sourcefire com <shesu () sourcefire com>
Subject: Re: [Snort-sigs] Snort Subscriber Rules Update 2023-02-28

Dear Team,

We are facing below issue kindly help on this.


--== Initializing Snort ==--
Initializing Output Plugins!
Initializing Preprocessors!
Initializing Plug-ins!
Parsing Rules file "c:snort\edc\snort.conf"
ERROR: c:snort\edc\snort.conf(0) Unable to open rules file
"c:snort\edc\snort.conf": No such file or directory.

Fatal Error, Quitting..

Mukesh Kumar Jha
Ptronics ATM Services Pvt. Ltd.
Dwarka Sector - 12
New Delhi-110075
Mobile - 9555283158

-----Original Message-----
From: Snort-sigs <snort-sigs-bounces () lists snort org> On Behalf Of Research
Sent: Tuesday, February 28, 2023 6:29 PM
To: snort-sigs () lists snort org; shesu () sourcefire com
Subject: [Snort-sigs] Snort Subscriber Rules Update 2023-02-28

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Talos Snort Subscriber Rules Update

Synopsis:
This release adds and modifies rules in several categories.

Details:
Talos has added and modified multiple rules in the malware-cnc, malware-other, os-windows, policy-other, protocol-scada 
and server-webapp rule sets to provide coverage for emerging threats from these technologies.


For a complete list of new and modified rules please see:

https://www.snort.org/advisories
-----BEGIN PGP SIGNATURE-----
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=4CIW
-----END PGP SIGNATURE-----

_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules:
https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href="
https://snort.org/downloads/#rule-downloads";>emerging threats</a>!

_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/mailman/private/snort-sigs/attachments/20230302/e9e822a9/attachment.htm>

------------------------------

Subject: Digest Footer

_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs
http://www.snort.org

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Please visit http://blog.snort.org for the latest news about Snort!


------------------------------

End of Snort-sigs Digest, Vol 70, Issue 3
*****************************************
_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!
_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!

Current thread: