[Snort-users] Snort error: Cannot decode data link type 105

Leo Nespoli leo4b at ...17494...
Wed Apr 13 08:57:26 EDT 2016


Thanks for your answer.
I'm not using a pcap, I'm trying to sniff a Wireless lan using Kismet, and then run snort on the "kistap0" interface created by Kismet. When I try to run snort:/usr/local/bin/snort -i kistap0
the error appears!
From: allewi at ...589...
To: leo4b at ...17494...; snort-users at lists.sourceforge.net
Subject: RE: [Snort-users] Snort error: Cannot decode data link type 105
Date: Wed, 13 Apr 2016 12:50:46 +0000









Can you send us a pcap of the traffic please?
 
Thanks.
 
 

Albert Lewis
QA Software Engineer
SOURCEfire, Inc.
now part of 
Cisco
9780 Patuxent Woods Drive

Columbia, MD 21046 
Phone: (office) 443.430.7112
Email:
allewi at ...589... 

 


From: Leo Nespoli [mailto:leo4b at ...17494...]


Sent: Wednesday, April 13, 2016 6:15 AM

To: snort-users at lists.sourceforge.net

Subject: [Snort-users] Snort error: Cannot decode data link type 105


 

Hi!

 


I'm trying to use the Kismet tun/tap interface with Snort 2.9.8.0


 


I compiled snort with --enable-non-ether-decoders --enable-sourcefire


 


But no way... the error is always there.


 


Any ideas? Thanks to all!


 		 	   		  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20160413/301e6cc7/attachment.html>


More information about the Snort-users mailing list