<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[[Solved] snort faield to up date rules]]></title><description><![CDATA[<p dir="auto">I've installed snort 3.2.9.8_6 pfsense version 2.4.4 . When I click on update it fail with following error log file.</p>
<p dir="auto">Starting rules update...  Time: 2019-07-02 19:47:09<br />
Downloading Snort Subscriber rules md5 file snortrules-snapshot-29120.tar.gz.md5...<br />
Snort Subscriber rules md5 download failed.<br />
Server returned error code 505.<br />
Server error message was: 505 HTTP Version Not Supported<br />
Snort Subscriber rules will not be updated.</p>
<p dir="auto">I search in package manager for update package but keep getting verison 3 as updated.</p>
<p dir="auto">Regards</p>
]]></description><link>https://forum.netgate.com/topic/144604/solved-snort-faield-to-up-date-rules</link><generator>RSS for Node</generator><lastBuildDate>Thu, 11 Jun 2026 12:39:17 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/144604.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 02 Jul 2019 10:37:43 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to [Solved] snort faield to up date rules on Thu, 04 Jul 2019 05:44:22 GMT]]></title><description><![CDATA[<p dir="auto">yups fixed this in next release to avoid extra space.</p>
]]></description><link>https://forum.netgate.com/post/851530</link><guid isPermaLink="true">https://forum.netgate.com/post/851530</guid><dc:creator><![CDATA[scorpoin]]></dc:creator><pubDate>Thu, 04 Jul 2019 05:44:22 GMT</pubDate></item><item><title><![CDATA[Reply to [Solved] snort faield to up date rules on Wed, 03 Jul 2019 13:48:31 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/scorpoin">@<bdi>scorpoin</bdi></a> said in <a href="/post/851413">[Solved] snort faield to up date rules</a>:</p>
<blockquote>
<p dir="auto">@beemks thank you very much issue is resolved , bymistake I added an extra space in Oinkcode . Mark this thread as solved</p>
<p dir="auto">Regards</p>
</blockquote>
<p dir="auto">I've added an entry to my internal bug tracking list to check for and trim off any extraneous spaces on the Oinkcode or ET-Pro code before storing them in the configuration.  I'll put that in the next update for Snort.  Neither of those codes should have spaces in them, but it's easy for one to slip in unnoticed since you can't see it on the screen.</p>
]]></description><link>https://forum.netgate.com/post/851454</link><guid isPermaLink="true">https://forum.netgate.com/post/851454</guid><dc:creator><![CDATA[bmeeks]]></dc:creator><pubDate>Wed, 03 Jul 2019 13:48:31 GMT</pubDate></item><item><title><![CDATA[Reply to [Solved] snort faield to up date rules on Wed, 03 Jul 2019 06:30:25 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/bmeeks">@<bdi>bmeeks</bdi></a> said in <a href="/post/851403">snort faield to up date rules</a>:</p>
<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/scorpoin">@<bdi>scorpoin</bdi></a> said in <a href="/post/851400">snort faield to up date rules</a>:</p>
<blockquote>
<p dir="auto">thanks for respoinse , I'm also using pfblockerng is this a case where it might be blocked? can any one share me the update url so I will add it into white-list in pfblocker-ng . I'm using free subscription for now.</p>
<p dir="auto">Regards</p>
</blockquote>
<p dir="auto">Yes, there have been reported instances in the past where the AWS IP space used by the Snort rules update process has gotten on an IP list that users may enable in pfBlockerNG.</p>
<p dir="auto">This is the base URL:  https://www.snort.org/rules/.  Your Oinkcode is added to the end as a query string.</p>
<p dir="auto">I'll repeat my troubleshooting advice one more time here for all to see.  ANYTIME you are getting failures of downloads or similar issues and you are running Snort, Suricata or pfBlockerNG you should immediately suspect one of those as the potential cause and starting disabling them in some sequence to find the culprit.  In this case, since Snort nor Suricata is likely to block their own downloads, I would have suspected pfBlockerNG and disabled it first to see if the rules update succeeds.  If it does, then you have found your problem and can then look for a solution.</p>
</blockquote>
<p dir="auto">@beemks thank you very much issue is resolved , bymistake I added an extra space in Oinkcode . Mark this thread as solved</p>
<p dir="auto">Regards</p>
]]></description><link>https://forum.netgate.com/post/851413</link><guid isPermaLink="true">https://forum.netgate.com/post/851413</guid><dc:creator><![CDATA[scorpoin]]></dc:creator><pubDate>Wed, 03 Jul 2019 06:30:25 GMT</pubDate></item><item><title><![CDATA[Reply to [Solved] snort faield to up date rules on Wed, 03 Jul 2019 04:49:51 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/scorpoin">@<bdi>scorpoin</bdi></a> said in <a href="/post/851400">snort faield to up date rules</a>:</p>
<blockquote>
<p dir="auto">thanks for respoinse , I'm also using pfblockerng is this a case where it might be blocked? can any one share me the update url so I will add it into white-list in pfblocker-ng . I'm using free subscription for now.</p>
<p dir="auto">Regards</p>
</blockquote>
<p dir="auto">Yes, there have been reported instances in the past where the AWS IP space used by the Snort rules update process has gotten on an IP list that users may enable in pfBlockerNG.</p>
<p dir="auto">This is the base URL:  https://www.snort.org/rules/.  Your Oinkcode is added to the end as a query string.</p>
<p dir="auto">I'll repeat my troubleshooting advice one more time here for all to see.  ANYTIME you are getting failures of downloads or similar issues and you are running Snort, Suricata or pfBlockerNG you should immediately suspect one of those as the potential cause and starting disabling them in some sequence to find the culprit.  In this case, since Snort nor Suricata is likely to block their own downloads, I would have suspected pfBlockerNG and disabled it first to see if the rules update succeeds.  If it does, then you have found your problem and can then look for a solution.</p>
]]></description><link>https://forum.netgate.com/post/851403</link><guid isPermaLink="true">https://forum.netgate.com/post/851403</guid><dc:creator><![CDATA[bmeeks]]></dc:creator><pubDate>Wed, 03 Jul 2019 04:49:51 GMT</pubDate></item><item><title><![CDATA[Reply to [Solved] snort faield to up date rules on Wed, 03 Jul 2019 04:28:02 GMT]]></title><description><![CDATA[<p dir="auto">thanks for respoinse , I'm also using pfblockerng is this a case where it might be blocked? can any one share me the update url so I will add it into white-list in pfblocker-ng . I'm using free subscription for now.</p>
<p dir="auto">Regards</p>
]]></description><link>https://forum.netgate.com/post/851400</link><guid isPermaLink="true">https://forum.netgate.com/post/851400</guid><dc:creator><![CDATA[scorpoin]]></dc:creator><pubDate>Wed, 03 Jul 2019 04:28:02 GMT</pubDate></item><item><title><![CDATA[Reply to [Solved] snort faield to up date rules on Tue, 02 Jul 2019 13:30:06 GMT]]></title><description><![CDATA[<p dir="auto">Make sure your Oinkcode is still valid (not expired, if using a paid subscription) and also make sure there is no extra space at the beginning or end of the Oinkcode in the text box on the GLOBAL SETTINGS page.</p>
<p dir="auto">You might also just need to wait a bit and try again.  Snort rules are hosted on AWS infrastructure, and depending on where you are in the world you may be hitting a different physical server than <a class="plugin-mentions-user plugin-mentions-a" href="/user/nogbadthebad">@<bdi>NogBadTheBad</bdi></a> or I would.  You have the latest version of the Snort package, so don't worry about an update.  You either have something wrong with your Oinkcode or the server you are getting directed to for rules download has a temporary issue.</p>
]]></description><link>https://forum.netgate.com/post/851289</link><guid isPermaLink="true">https://forum.netgate.com/post/851289</guid><dc:creator><![CDATA[bmeeks]]></dc:creator><pubDate>Tue, 02 Jul 2019 13:30:06 GMT</pubDate></item><item><title><![CDATA[Reply to [Solved] snort faield to up date rules on Tue, 02 Jul 2019 11:04:00 GMT]]></title><description><![CDATA[<p dir="auto">Works fine here.</p>
<p dir="auto">You have got a valid Oinkmaster Code ?</p>
<p dir="auto">Services -&gt; Snort -&gt; Global Settings -&gt; Snort Subscriber Rules</p>
<p dir="auto">https://forum.netgate.com/topic/71578/pfsense-snort-vrt-subsciption-error-505-solved</p>
]]></description><link>https://forum.netgate.com/post/851246</link><guid isPermaLink="true">https://forum.netgate.com/post/851246</guid><dc:creator><![CDATA[NogBadTheBad]]></dc:creator><pubDate>Tue, 02 Jul 2019 11:04:00 GMT</pubDate></item></channel></rss>