Hat jemand psad, shorewall und snort parallel am laufen ??

Einrichten des lokalen Netzes, Verbindung zu anderen Computern und Diensten.
Antworten
Benutzeravatar
zyta2k
Beiträge: 2446
Registriert: 14.03.2003 09:18:00
Kontaktdaten:

Hat jemand psad, shorewall und snort parallel am laufen ??

Beitrag von zyta2k » 31.01.2004 11:16:08

Habe drum Probleme mit der interaktion der drei.

psad meldet:

Code: Alles auswählen

 ** The INPUT chain in the iptables ruleset on workstation includes a
    default LOG rule for all protocols, but the rule does not have a log
    prefix of "DROP".  It appears as though the log prefix is set to
    "Shorewall:INPUT:REJECT:".  psad will not be able to detect scans
    without adding --log-prefix "DROP" to the rule.

 ** The INPUT chain in the iptables ruleset on workstation does not include
    a default DROP rule for all protocols.


 .. NOTE: IPTables::Parse does not yet parse user defined chains and so it
    is possible your firewall config is compatible with psad anyway.
Any ideas ?

Antworten