Suricata starting error



  • Hello

    i need some help for this error message :
    [2.2.4-RELEASE][root@fw1.pra.rip]/root: /usr/pbi/rc.d/suricata onestart
    Starting suricata.
    30/8/2015 – 21:28:18 - <error>- [ERRCODE: SC_ERR_MISSING_CONFIG_PARAM(118)] - NO logging compatible with daemon mode selected, suricata won't be able to log. Please update  'logging.outputs' in the YAML.
    30/8/2015 – 21:28:18 - <notice>- This is Suricata version 2.0.8 RELEASE

    where is "logging.outputs"

    in /usr/pbi/suricata-amd64/local/etc/suricata/suricata.yaml i can see /var/log/suricata.log but no file

    thank you  for your help

    pra</notice></error>



  • Did you by chance disable all the logging options on the INTERFACE SETTINGS tab for that Suricata interface?  Can you post a screenshot of the Logging Settings from that screen?

    Bill