Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Snort Service Won't Start Fatal Error after Latest Update

    Scheduled Pinned Locked Moved IDS/IPS
    4 Posts 3 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K Offline
      kiekar
      last edited by

      Hello,

      Just finished updating SNORT to version 3.2.9.3 but now the service won't start. Rebooted, still same problem. Log file shows FATAL Error

      May 26 16:57:11 snort 59578 FATAL ERROR: /usr/local/etc/snort/snort_49494_pppoe0/rules/snort.rules(3957) byte_test rule option cannot extract more than 4 bytes without valid string prefix.

      .

      Any help to point me in the right direction would be much appreciated.

      Thanks,

      1 Reply Last reply Reply Quote 0
      • R Offline
        rebytr
        last edited by

        I had the same problem.  See the end of this thread for the solution that worked for me.

        https://forum.pfsense.org/index.php?topic=130993.0

        1 Reply Last reply Reply Quote 0
        • K Offline
          kiekar
          last edited by

          Hello and thanks. This also worked for me.

          1 Reply Last reply Reply Quote 0
          • bmeeksB Offline
            bmeeks
            last edited by

            Looks ilke a syntax error in one of the Emerging Threats rules.

            Bill

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.