Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Snort Service Won't Start Fatal Error after Latest Update

    Scheduled Pinned Locked Moved IDS/IPS
    4 Posts 3 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      kiekar
      last edited by

      Hello,

      Just finished updating SNORT to version 3.2.9.3 but now the service won't start. Rebooted, still same problem. Log file shows FATAL Error

      May 26 16:57:11 snort 59578 FATAL ERROR: /usr/local/etc/snort/snort_49494_pppoe0/rules/snort.rules(3957) byte_test rule option cannot extract more than 4 bytes without valid string prefix.

      .

      Any help to point me in the right direction would be much appreciated.

      Thanks,

      1 Reply Last reply Reply Quote 0
      • R
        rebytr
        last edited by

        I had the same problem.  See the end of this thread for the solution that worked for me.

        https://forum.pfsense.org/index.php?topic=130993.0

        1 Reply Last reply Reply Quote 0
        • K
          kiekar
          last edited by

          Hello and thanks. This also worked for me.

          1 Reply Last reply Reply Quote 0
          • bmeeksB
            bmeeks
            last edited by

            Looks ilke a syntax error in one of the Emerging Threats rules.

            Bill

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.