No subject


Thu Nov 23 16:36:19 EST 2017


syntax because I am on Windows and not on Unix/Linux???  I have tried
correcting the problems from within the command line but no success.  Any
suggestions would be greatly appreciated.

 

Thanks,

 

Michael Martin

University of Montevallo


------=_NextPart_000_0027_01C39406.16EAD830
Content-Type: text/html; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

<html>

<head>
<meta http-equiv=3DContent-Type content=3D"text/html; charset=3Dus-ascii">
<meta name=3DGenerator content=3D"Microsoft Word 11 (filtered)">

<style>
<!--
 /* Font Definitions */
 @font-face
	{font-family:Tahoma;
	panose-1:2 11 6 4 3 5 4 4 2 4;}
 /* Style Definitions */
 p.MsoNormal, li.MsoNormal, div.MsoNormal
	{margin:0in;
	margin-bottom:.0001pt;
	font-size:12.0pt;
	font-family:"Times New Roman";}
a:link, span.MsoHyperlink
	{color:blue;
	text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
	{color:purple;
	text-decoration:underline;}
p
	{margin-right:0in;
	margin-left:0in;
	font-size:12.0pt;
	font-family:"Times New Roman";}
span.emailstyle17
	{font-family:Arial;
	color:windowtext;}
span.emailstyle18
	{font-family:Arial;
	color:navy;}
span.EmailStyle19
	{font-family:Arial;
	color:navy;}
@page Section1
	{size:595.3pt 841.9pt;
	margin:1.0in 1.25in 1.0in 1.25in;}
div.Section1
	{page:Section1;}
-->
</style>

</head>

<body lang=3DEN-US link=3Dblue vlink=3Dpurple>

<div class=3DSection1>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span style=
=3D'font-size:
10.0pt;font-family:Arial;color:navy'>Michael,</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span style=
=3D'font-size:
10.0pt;font-family:Arial;color:navy'> </span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span style=
=3D'font-size:
10.0pt;font-family:Arial;color:navy'>Follow the appropriate guide for
installing your IDS using Snortsnarf and the instructions are there on how =
to
install the time modules.</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span style=
=3D'font-size:
10.0pt;font-family:Arial;color:navy'> </span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span style=
=3D'font-size:
10.0pt;font-family:Arial;color:navy'>The problem you are having is user
inflicted not “</span></font><font size=3D2 color=3Dnavy face=3DArial=
><span
lang=3DEN-GB style=3D'font-size:10.0pt;font-family:Arial;color:navy'>of syn=
tax
because I am on Windows and not on Unix/Linux???”.</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'> </span></font=
></p>

<div>

<p style=3D'margin-bottom:12.0pt'><font size=3D2 color=3Dnavy face=3D"Times=
 New Roman"><span
style=3D'font-size:10.0pt;color:navy'>Cheers...<br>
<br>
-Michael Steele<br>
--<br>
 System Engineer / Security Support Technician    =
<br>
 <a href=3D"mailto:michaels at ...9077...">mailto:michaels at ...9077...</a>=
   <br>
 Website: <a href=3D"http://www.winsnort.com">http://www.winsnort.com<=
/a><br>
 Snort: Open Source Network IDS - <a href=3D"http://www.snort.org">htt=
p://www.snort.org</a></span></font></p>

</div>

<div>

<div class=3DMsoNormal align=3Dcenter style=3D'text-align:center'><font siz=
e=3D3
face=3D"Times New Roman"><span style=3D'font-size:12.0pt'>

<hr size=3D2 width=3D"100%" align=3Dcenter tabindex=3D-1>

</span></font></div>

<p class=3DMsoNormal><b><font size=3D2 face=3DTahoma><span style=3D'font-si=
ze:10.0pt;
font-family:Tahoma;font-weight:bold'>From:</span></font></b><font size=3D2
face=3DTahoma><span style=3D'font-size:10.0pt;font-family:Tahoma'>
snort-users-admin at lists.sourceforge.net
[mailto:snort-users-admin at lists.sourceforge.net] <b><span style=3D'font-wei=
ght:
bold'>On Behalf Of </span></b>Martin Jr., D. Michael<br>
<b><span style=3D'font-weight:bold'>Sent:</span></b> Thursday, October 16, =
2003
2:22 PM<br>
<b><span style=3D'font-weight:bold'>To:</span></b>
snort-users at lists.sourceforge.net<br>
<b><span style=3D'font-weight:bold'>Subject:</span></b> [Snort-users] Snort=
Snarf</span></font></p>

</div>

<p class=3DMsoNormal><font size=3D3 face=3D"Times New Roman"><span style=3D=
'font-size:
12.0pt'> </span></font></p>

<p class=3DMsoNormal style=3D'text-align:justify'><font size=3D2 color=3Dna=
vy
face=3DArial><span style=3D'font-size:10.0pt;font-family:Arial;color:navy'>=
Before I
start, I want to say, “Thanks!” to all of you helpful and patie=
nt
individuals out there.  Yes, I am new to Snort and “for now&#822=
1;
it seems like as soon as I solve one problem, I get one more question. 
That being said…</span></font></p>

<p class=3DMsoNormal style=3D'text-align:justify'><font size=3D2 color=3Dna=
vy
face=3DArial><span lang=3DEN-GB style=3D'font-size:10.0pt;font-family:Arial;
color:navy'> </span></font></p>

<p class=3DMsoNormal style=3D'text-align:justify'><font size=3D2 color=3Dna=
vy
face=3DArial><span lang=3DEN-GB style=3D'font-size:10.0pt;font-family:Arial;
color:navy'> </span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>I am in a Windows e=
nvironment
(go ahead a chuckle) and have started using Snort.  I now have my swit=
ch
issues solved and (mainly thanks to folks at SwordSoft and their VIA log
analysis tool), I have been getting some information out.  Unfortunate=
ly,
since I am at a University and mainly sniffing traffic in residence halls
(viruses are the main problem), I have Snort alert.ids files that are huge
(27+MB for a half-day).  This appears to be way too much for VIA.</spa=
n></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'> </span></font=
></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>Enter SnortSnarf&#8=
230;</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>Now, (yes, I have v=
isited
WinSnort with little success thus far) I am having problems with
SnortSnarf.  I am perfectly happy running it from a command prompt and
don’t need IIS for that (I can figure that out later).  But I ke=
ep
getting the following error:</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'> </span></font=
></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>Can’t locate
Time/ParsDate.pm in @INC….. line 18</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>BEGIN
failed—compilation aborted … line 18</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>And so on… (f=
our
errors in all)</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'> </span></font=
></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>From the looks of t=
hings,
I am assuming, the issues is probably one of syntax because I am on Windows=
 and
not on Unix/Linux???  I have tried correcting the problems from within=
 the
command line but no success.  Any suggestions would be greatly
appreciated.</span></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'> </span></font=
></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>Thanks,</span></fon=
t></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'> </span></font=
></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
style=3D'font-size:10.0pt;font-family:Arial;color:navy'>Michael Martin</spa=
n></font></p>

<p class=3DMsoNormal><font size=3D2 color=3Dnavy face=3DArial><span lang=3D=
EN-GB
  style=3D'font-size:10.0pt;font-family:Arial;color:navy'>University</span>=
</font><font
 size=3D2 color=3Dnavy face=3DArial><span lang=3DEN-GB style=3D'font-size:1=
0.0pt;
 font-family:Arial;color:navy'> of Montevallo</span></font></p>

</div>

</body>

</html>

------=_NextPart_000_0027_01C39406.16EAD830--





More information about the Snort-users mailing list