Konfiguration snort

xStrak

Member
Guten Tag

Ich habe, snort zu installieren ich habe ein Konfigurationsproblem, Um zu testen, snort mit DB-Typ: /usr/local/bin/snort -c /etc/snort/snort.conf

Code:
#     Track TCP sessions: ACTIVE
ksh: Track: not found
#     Max TCP sessions: 8192
ksh: Max: not found
#     Memcap (for reassembly packet storage): 8388608
ksh: syntax error: `for' unexpected
#     Track UDP sessions: INACTIVE
ksh: Track: not found
#     Track ICMP sessions: INACTIVE
ksh: Track: not found
#     Log info if session memory consumption exceeds 1048576
ksh: Log: not found
# Stream5 TCP Policy config:
ksh: Stream5: not found
#     Reassembly Policy: FIRST
ksh: Reassembly: not found
#     Timeout: 30 seconds
ksh: Timeout:: not found
#     Min ttl:  1
ksh: Min: not found
#     Maximum number of bytes to queue per session: 1048576
ksh: Maximum: not found
#     Maximum number of segs to queue per session: 2621
ksh: Maximum: not found
#     Options:
ksh: Options:: not found
#         Static Flushpoint Sizes: YES
ksh: Static: not found
#     Reassembly Ports:
ksh: Reassembly: not found
#       21 client (Footprint)
ksh: syntax error: `(' unexpected
#       23 client (Footprint)
ksh: syntax error: `(' unexpected
#       25 client (Footprint)
ksh: syntax error: `(' unexpected
#       42 client (Footprint)
ksh: syntax error: `(' unexpected
#       53 client (Footprint)
ksh: syntax error: `(' unexpected
#       80 client (Footprint)
ksh: syntax error: `(' unexpected
#       110 client (Footprint)
ksh: syntax error: `(' unexpected
#       111 client (Footprint)
ksh: syntax error: `(' unexpected
#       135 client (Footprint)
ksh: syntax error: `(' unexpected
#       136 client (Footprint)
ksh: syntax error: `(' unexpected
#       137 client (Footprint)
ksh: syntax error: `(' unexpected
#       139 client (Footprint)
ksh: syntax error: `(' unexpected
#       143 client (Footprint)
ksh: syntax error: `(' unexpected
#       445 client (Footprint)
ksh: syntax error: `(' unexpected
#       513 client (Footprint)
ksh: syntax error: `(' unexpected
#       514 client (Footprint)
ksh: syntax error: `(' unexpected
#       1433 client (Footprint)
ksh: syntax error: `(' unexpected
#       1521 client (Footprint)
ksh: syntax error: `(' unexpected
#       2401 client (Footprint)
ksh: syntax error: `(' unexpected
#       3306 client (Footprint)
ksh: syntax error: `(' unexpected
# HttpInspect Config:
ksh: HttpInspect: not found
#     GLOBAL CONFIG
ksh: GLOBAL: not found
#       Max Pipeline Requests:    0
ksh: Max: not found
#       Inspection Type:          STATELESS
ksh: Inspection: not found
#       Detect Proxy Usage:       NO
ksh: Detect: not found
#       IIS Unicode Map Filename: /etc/snort/unicode.map
ksh: IIS: not found
#       IIS Unicode Map Codepage: 1252
ksh: IIS: not found
#     DEFAULT SERVER CONFIG:
ksh: DEFAULT: not found
#       Server profile: All
ksh: Server: not found
#       Ports: 80 8080 8180
ksh: Ports:: not found
#       Server Flow Depth: 300
ksh: Server: not found
#       Client Flow Depth: 300
ksh: Client: not found
#       Max Chunk Length: 500000
ksh: Max: not found
#       Max Header Field Length: 0
ksh: Max: not found
#       Inspect Pipeline Requests: YES
ksh: Inspect: not found
#       URI Discovery Strict Mode: NO
ksh: URI: not found
#       Allow Proxy Usage: NO
ksh: Allow: not found
#       Disable Alerting: NO
ksh: Disable: not found
#       Oversize Dir Length: 500
ksh: Oversize: not found
#       Only inspect URI: NO
ksh: Only: not found
#       Normalize HTTP Headers: NO
ksh: Normalize: not found
#       Normalize HTTP Cookies: NO
ksh: Normalize: not found
#       Ascii: YES alert: NO
ksh: Ascii:: not found
#       Double Decoding: YES alert: YES
ksh: Double: not found
#       %U Encoding: YES alert: YES
ksh: %U: not found
#       Bare Byte: YES alert: YES
ksh: Bare: not found
#       Base36: OFF
ksh: Base36:: not found
#       UTF 8: OFF
ksh: UTF: not found
#       IIS Unicode: YES alert: YES
ksh: IIS: not found
#       Multiple Slash: YES alert: NO
ksh: Multiple: not found
#       IIS Backslash: YES alert: NO
ksh: IIS: not found
#       Directory Traversal: YES alert: NO
ksh: Directory: not found
#       Web Root Traversal: YES alert: YES
ksh: Web: not found
#       Apache WhiteSpace: YES alert: NO
ksh: Apache: not found
#       IIS Delimiter: YES alert: NO
ksh: IIS: not found
#       IIS Unicode Map: GLOBAL IIS UNICODE MAP CONFIG
ksh: IIS: not found
#       Non-RFC Compliant Characters: NONE
ksh: Non-RFC: not found
#       Whitespace Characters: 0x09 0x0b 0x0c 0x0d
ksh: Whitespace: not found
# rpc_decode arguments:
ksh: rpc_decode: not found
#     Ports to decode RPC on: 111 32771
ksh: Ports: not found
#     alert_fragments: INACTIVE
ksh: alert_fragments:: not found
#     alert_large_fragments: ACTIVE
ksh: alert_large_fragments:: not found
#     alert_incomplete: ACTIVE
ksh: alert_incomplete:: not found
#     alert_multiple_requests: ACTIVE
ksh: alert_multiple_requests:: not found
# Portscan Detection Config:
ksh: Portscan: not found
#     Detect Protocols:  TCP UDP ICMP IP
ksh: Detect: not found
eep decoy_portscan distributed_portscan                                       <
ksh: Detect: not found
#     Sensitivity Level: Low
ksh: Sensitivity: not found
#     Memcap (in bytes): 10000000
ksh: syntax error: `in' unexpected
#     Number of Nodes:   36900
ksh: Number: not found
#
/snort/rules/local.rules or /etc/snort//etc/snort/rules/local.rules           <
ksh: ERROR:: not found
# Fatal Error, Quitting..
ksh: Fatal: not found
# #
#

Ich habe ein anderes Problem, in der Konfiguration der Datei Basis cp base_conf.php.dist base_conf.php Bearbeiten Sie die base_conf.php, um die folgenden:

$BASE_urlpath

Die Root-URI Ihrer Website

wenn ich von meinem tape url (http://192.168.1.1/base), ich sehe es ein Fehler

Code:
]Error loading the DB Abstraction library: from "/adodb.inc.php"

Check the DB abstraction library variable $DBlib_path in base_conf.php 

The underlying database library currently used is ADODB, that can be downloaded at http://adodb.sourceforge.net/
]
 
Zurück
Oben