<?xml version="1.0"?>
<rss version="2.0"><channel><title>Discussing Manual Installation for Apache2 with PostgreSQL Logging Latest Topics</title><link>https://www.winsnort.com/forum/16-discussing-manual-installation-for-apache2-with-postgresql-logging/</link><description>Discussing Manual Installation for Apache2 with PostgreSQL Logging Latest Topics</description><language>en</language><item><title>B2-test issue/freeze</title><link>https://www.winsnort.com/topic/282-b2-test-issuefreeze/</link><description><![CDATA[
<div>
	C:\Users\Operator&gt;d:\winids\barnyard2\barnyard2.exe -c d:\winids\barnyard2\etc\barnyard2.conf -d d:\winids\snort\log -f merged.log -l d:\winids\barnyard2 -w d:\winids\snort\log\barnyard.waldo -T<br />
	Running in Test mode
</div>

<div>
	        --== Initializing Barnyard2 ==--<br />
	Initializing Input Plugins!<br />
	Initializing Output Plugins!<br />
	Parsing config file "d:\winids\barnyard2\etc\barnyard2.conf"
</div>

<div>
	<br />
	+[ Signature Suppress list ]+<br />
	----------------------------<br />
	+[No entry in Signature Suppress List]+<br />
	----------------------------<br />
	+[ Signature Suppress list ]+
</div>

<div>
	WARNING: invalid Reference spec 'url,'. Ignored<br />
	WARNING: invalid Reference spec 'url,'. Ignored<br />
	WARNING: invalid Reference spec 'url,'. Ignored<br />
	WARNING: invalid Reference spec 'url,'. Ignored<br />
	Barnyard2 spooler: Event cache size set to [32768]<br />
	INFO database: Defaulting Reconnect/Transaction Error limit to 10<br />
	INFO database: Defaulting Reconnect sleep time to 5 second
</div>

<div>
	 
</div>

<div>
	..............................................
</div>

<div>
	 
</div>

<div>
	 
</div>

<div>
	just seems to go on forever from here...
</div>

<div>
	 
</div>

<div>
	 
</div>

<div>
	When I open task manager I can see the processes apache, PostgreSQL, and snort are all there but there appears to be no activity....
</div>
]]></description><guid isPermaLink="false">282</guid><pubDate>Mon, 25 Dec 2017 17:09:57 +0000</pubDate></item><item><title>Database ERROR:Database connection failed</title><link>https://www.winsnort.com/topic/211-database-errordatabase-connection-failed/</link><description><![CDATA[
<p>
	hey,
</p>

<p>
	 thanks for the guide.
</p>

<p>
	i closely completed my installation,except the last step:
</p>

<h3 style="font-size:1.2em;color:rgb(82,82,82);font-family:'Helvetica Neue', Helvetica, Arial, sans-serif;font-style:normal;font-variant:normal;letter-spacing:normal;line-height:22px;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;background-color:rgb(255,255,255);">
	<i>Starting the Windows Intrusion Detection Systems (WinIDS) Security Console</i>
</h3>

<p>
	when i  <span style="color:rgb(82,82,82);font-family:'Helvetica Neue', Helvetica, Arial, sans-serif;font-size:14px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;line-height:22px;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;float:none;background-color:rgb(255,255,255);">opened a web-browser and type 'http://winids'</span> ", it shows DATABASE ERROR as bellow:
</p>

<p>
	Error (p)connecting to DB : snort@winids
</p>

<p>
	Check the DB connection variables in base_conf.php <br />
	               = $alert_dbname   : MySQL database name where the alerts are stored <br />
	               = $alert_host     : host where the database is stored<br />
	               = $alert_port     : port where the database is stored<br />
	               = $alert_user     : username into the database<br />
	               = $alert_password : password for the username<br />
	              
</p>

<p>
	Database ERROR:Database connection failed<br />
	 
</p>

<p>
	 
</p>

<p>
	May somebody pls kindly give some support? thank u！
</p>

<p>
	 
</p>

<p>
	 
</p>
]]></description><guid isPermaLink="false">211</guid><pubDate>Fri, 25 Mar 2016 09:05:51 +0000</pubDate></item><item><title>Barnyard does not seem to be picking traffic</title><link>https://www.winsnort.com/topic/46-barnyard-does-not-seem-to-be-picking-traffic/</link><description><![CDATA[<div>database:   detail level = full</div>
<div>database:     ignore_bpf = no</div>
<div>database: using the "log" facility</div>
<div> </div>
<div>        --== Initialization Complete ==--</div>
<div> </div>
<div>  ______   -*&gt; Barnyard2 &lt;*-</div>
<div> / ,,_    Version 2.1.13 (Build 327)</div>
<div> |o"  )~|  By Ian Firns (SecurixLive): <a href="http://www.securixlive.com/" rel="external nofollow">http://www.securixlive.com/</a></div>
<div> + '''' +  © Copyright 2008-2013 Ian Firns &lt;firnsy@securixlive.com&gt;</div>
<div> </div>
<div>Using waldo file 'd:winidssnortlogbarnyard.waldo':</div>
<div>    spool directory = d:winidssnortlog</div>
<div>    spool filebase  = merged.log</div>
<div>    time_stamp      = 1405511881</div>
<div>    record_idx      = 2</div>
<div>Opened spool file 'd:winidssnortlog/merged.log.1405511881'</div>
<div>Closing spool file 'd:winidssnortlog/merged.log.1405511881'. Read 2 records</div>
<div>Opened spool file 'd:winidssnortlog/merged.log.1405523537'</div>
<div>Waiting for new data</div>
<div>07/16-18:13:59.508457  [**] [129:12:1] stream5: TCP Small Segment Threshold Exce</div>
<div>eded [**] [Classification: Potentially Bad Traffic] [Priority: 2] {TCP} 192.168.</div>
<div>253.1:139 -&gt; 192.168.253.131:1035</div>
<div> </div>
]]></description><guid isPermaLink="false">46</guid><pubDate>Wed, 16 Jul 2014 16:14:52 +0000</pubDate></item><item><title>No Data in Security Console</title><link>https://www.winsnort.com/topic/98-no-data-in-security-console/</link><description><![CDATA[<p>I can't seem to get any data to show up in the gui, everything is 0. I see events in the barnyard2 window. I installed to the c: partition instead of d:. I tried to replace all the references I could find. I changed all the commands in the tutorial and the configuration settings. I also changed the batch files in the activators directory and the modder.vbs script. Is there anywhere else this needs to be changed or is it not possible to make it work this way?</p>
<p> </p>
<p>Thanks.</p>
]]></description><guid isPermaLink="false">98</guid><pubDate>Thu, 23 Oct 2014 13:29:48 +0000</pubDate></item></channel></rss>
