Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    After upgrade from pfsense 22.05 to 23.01 - SNORT is getting a core dump!!!!

    IDS/IPS
    3
    6
    456
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      NSuttner
      last edited by

      Hi,
      SNORT is running very well for a long time with pfsense version 22.05. After todays upgrade i got the following error in system log!

      SNORT is starting an running since approx. 5min and than it stops!

      kernel - mvneta2: promiscuous mode disabled
      kernel - pid 35285 (snort), jid 0, uid 0: exited on signal 10 (core dumped)
      kernel - mvneta2: promiscuous mode enabled
      php 23756 [Snort] Snort START for WAN(mvneta2)...

      Any idea wants going wrong, pfsense is a Netgate 3100 with ARM Cortex-A9 r4p1 (ECO: 0x00000000) 2 CPUs Crypto: Marvell Cryptographic Engine and Security Accelerator

      Thanks for any idea!
      Regards, Norbert

      M 1 Reply Last reply Reply Quote 0
      • M
        mcury @NSuttner
        last edited by

        @nsuttner This redmine regression #13958 was updated recently.
        https://redmine.pfsense.org/issues/13958#change-66560

        dead on arrival, nowhere to be found.

        N 1 Reply Last reply Reply Quote 0
        • N
          NSuttner @mcury
          last edited by

          @mcury
          Hello,

          i'm a little confused now, but I understand the basics. So I need to make this change in the Makefile for the Snort binary. Sorry, where can I find this file, i'm not that deep into the matter!

          Thanks so much,
          Norbert

          M bmeeksB 2 Replies Last reply Reply Quote 0
          • M
            mcury @NSuttner
            last edited by

            @nsuttner According to that, they will be posting a review soon.
            It shouldn't take long for a new binary is available, so you don't need to do anything.

            dead on arrival, nowhere to be found.

            N 1 Reply Last reply Reply Quote 0
            • N
              NSuttner @mcury
              last edited by

              @mcury Ah, understood, thanks a lot!

              1 Reply Last reply Reply Quote 0
              • bmeeksB
                bmeeks @NSuttner
                last edited by

                @nsuttner said in After upgrade from pfsense 22.05 to 23.01 - SNORT is getting a core dump!!!!:

                @mcury
                Hello,

                i'm a little confused now, but I understand the basics. So I need to make this change in the Makefile for the Snort binary. Sorry, where can I find this file, i'm not that deep into the matter!

                Thanks so much,
                Norbert

                No, there is nothing you can do on your end. The pfSense developer team will make the change on their package builder infrastructure for the SG-3100, and then a new version of the Snort package will appear under SYSTEM > PACKAGE MANAGER. It may take a few days for this to transpire.

                1 Reply Last reply Reply Quote 1
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.