OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[Snort-users] about idmef xml

From: lucy lee (kidlucy88yahoo.com)
Date: Wed Apr 16 2003 - 21:52:59 CDT


Hi all,
   I can't get any alerts in idmef xml form.I want to
know whether snort-1.9.0-idmef-1.1.tar.gz itself has
bugs or i have error operation?
   Now i just get xml declaration in
idmef-messages.log, alert_id_num always
not be written and empty. messages given by run is
such as :
  IDMEF(): Unknown caller type, returning
  IDMEF(): not an IDMEF rule, returning
or
  IDMEF:cannot output messages on a NULL facility
or
  Segmentation fault
  while rules have been appended using option such as
"idmef:default" by me.libxml2,libidmf and libntp all
have been installed. I run snort as root right,too.
  I'm very anxious.Who can paste process about snort
with idmef xml and give me more suggestions?

  thanks in advance!

Lucy

__________________________________________________
Do you Yahoo!?
The New Yahoo! Search - Faster. Easier. Bingo
http://search.yahoo.com

-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Snort-users mailing list
Snort-userslists.sourceforge.net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users