Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    [issue to update the rules in snort](/topic/137765/issue-to-update-the-rules-in-snort)

    Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
    1 Posts 1 Posters 242 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E
      ESM
      last edited by ESM

      Re: issue to update the rules in snort

      HI guys
      Please I need your help, my issue to update the snort sitll persists,
      check the log after update the snort the last verson, please what can I do more ?

      Upgrading pfSense-pkg-snort...
      Updating pfSense-core repository catalogue...
      pfSense-core repository is up to date.
      Updating pfSense repository catalogue...
      pfSense repository is up to date.
      All repositories are up to date.
      Checking integrity... done (0 conflicting)
      The following 1 package(s) will be affected (of 0 checked):

      Installed packages to be REINSTALLED:
      pfSense-pkg-snort-3.2.9.8_4 [pfSense]

      Number of packages to be reinstalled: 1
      [1/1] Reinstalling pfSense-pkg-snort-3.2.9.8_4...
      [1/1] Extracting pfSense-pkg-snort-3.2.9.8_4: .......... done
      Removing snort components...
      Menu items... done.
      Services... done.
      Loading package instructions...
      Saving updated package information...
      overwrite!
      Loading package configuration... done.
      Configuring package components...
      Loading package instructions...
      Custom commands...
      Executing custom_php_install_command()...Saved settings detected.
      Migrating settings to new configuration... done.
      Downloading Snort Subscriber rules md5 file... FAILED!
      Snort Subscriber rules md5 error ... Server returned error code 422 ...
      Snort Subscriber rules will not be updated.

      Server returned error code 422.
      Downloading Snort OpenAppID detectors md5 file... done.
      Checking Snort OpenAppID detectors md5 file... done.
      There is a new set of Snort OpenAppID detectors posted.
      Downloading snort-openappid.tar.gz... done.
      Downloading Snort OpenAppID RULES detectors md5 file... done.
      Checking Snort OpenAppID RULES detectors md5 file... done.
      There is a new set of Snort OpenAppID RULES detectors posted.
      Downloading appid_rules.tar.gz... done.
      Downloading Snort GPLv2 Community Rules md5 file... done.
      Checking Snort GPLv2 Community Rules md5 file... done.
      There is a new set of Snort GPLv2 Community Rules posted.
      Downloading community-rules.tar.gz... done.
      Downloading Emerging Threats Open rules md5 file... done.
      Checking Emerging Threats Open rules md5 file... done.
      There is a new set of Emerging Threats Open rules posted.
      Downloading emerging.rules.tar.gz... done.
      Installing Snort OpenAppID detectors...Copying md5 signature to snort directory... done.
      Installing Snort OpenAppID RULES detectors...Copying md5 signature to snort directory... done.
      Installing Snort GPLv2 Community Rules... done.
      Installing Emerging Threats Open rules...Copying md5 signature to snort directory... done.
      Warning: No interfaces configured for Snort were found...
      Cleaning up temp dirs and files... done.
      The Rules update has finished.
      Generating snort.conf configuration file from saved settings.
      Generating snort.sh script in /usr/local/etc/rc.d/... done.
      Finished rebuilding Snort configuration files.
      done.
      Executing custom_php_resync_config_command()...done.
      Menu items... done.
      Services... done.
      Writing configuration... done.
      Please visit Services - Snort - Interfaces tab first and select your desired rules. Afterwards visit the Updates tab to download your configured rulesets.Message from pfSense-pkg-snort-3.2.9.8_4:

      Please visit Services - Snort - Interfaces tab first to add an interface, then select your desired rules packages at the Services - Snort - Global tab. Afterwards visit the Updates tab to download your configured rulesets.

      Cleaning up cache... done.
      Success

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.