Problems with ruleset emerging-exploit.rules
-
Hey all,
maybe an off-topic, but starting 6.6.26 there seem to be problems with the snort ruleset emerging-exploit.rules.
Snort logs
FATAL ERROR: /usr/local/etc/snort/snort_1555_bge4/rules/snort.rules(10918) Negated IP ranges that are more general than non-negated ranges are not allowed. Consider inverting the logic: [$EXTERNAL_NET,$HTTP_SERVERS].
when the ruleset is enabled.
Kind regards,
Jens
-
@Jens-0 See here:
https://forum.netgate.com/topic/200781/snort-4.1.6_28-fatal-error?_=1781002007951
Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.