-
Posts
634 -
Joined
-
Last visited
-
Days Won
101
Content Type
Profiles
Forums
Downloads
Tutorials
Everything posted by Morpheus
-
Is MySQL running as a service? Can you login to the MySQL server from the command prompt. Open a command window and type 'mysql -u snort -pl0gg3r' (less the outside quotes), and tap the Enter key. Type exactly as shown above. You should be dropped into a mysql CMD prompt. Were you able to log into the MySQL server?
-
I'm not sure what Windows XP has to do with this problem? It appears by the screen shot that NO traffic is being detected. This could be a MULTITUDE of problems. 1) NIC drivers, or compatibility 2) Not specifying the correct NIC in the run line 3) Connected to a unmanaged switch (needs to see ALL traffic). 4) Short not configured correctly for HOME_NET
-
This is happening because you have a gazillion events being processed and the Windows Intrusion Detection Systems (WinIDS) security console is working overtime. Open the php.ini and change: Original Line(s): max_execution_time = 60 Change to: max_execution_time = xx Change the xx to accommodate the time required. My guess is that you are processing hundreds of thousands if not millions of events that are irrelevant. Try adjusting the preprocessors and the rules to accommodate your specific needs. If you need help doing this join the snort-users mailing list. You will find a lot of advanced uses that are willing to help.
-
Final path problem
Morpheus replied to macart's topic in Discussing Manual Installation for IIS with MySQL Logging
Read this and give it a try and see if it clears up your problem. -
Compilation error Line 29
Morpheus replied to TankBoy's topic in Issues with Rules in the Windows Intrusion Detection system
Getting to the point where I'm unable to reboot to fix things -
Compilation error Line 29
Morpheus replied to TankBoy's topic in Issues with Rules in the Windows Intrusion Detection system
It appears that the sys::syslog module failed to install per the tutorial. Go back and try installing it again. -
Did you follow the tutorial (exactly) and run the modder.vbs file? Did you return to the section labeled 'Configuring Internet Information Services for PHP', and complete. Did you try running the test.php again, and see if it displays. Note: The test.php needs to be copied to the d:winidsinetpubwwwrootbase folder, and then accessed from the URL http://winids/test.php
-
Error DAQ
Morpheus replied to qwert's topic in Discussing Manual Installation for IIS with MySQL Logging
Follow the tutorial. you are using -ix and that is wrong. The tutorial instructs you on the correct way to set the -ix switch. -
Base Will Not Update
Morpheus replied to Flonkbob's topic in Discussing Manual Installation for Apache2 with MySQL Logging
I ended up deleteing the log files to get it to correctly update the date. The events were correct but didn't have the correct date. I believe this is due to a corrupted waldo file. To fix; use the Windows Intrusion Detection Systems security console and delete all the events. Stop snort and Barnyard2 from the Task Manager, Go into the d:\winids\snort\logs folder, delete all the files, and reboot. -
Base Will Not Update
Morpheus replied to Flonkbob's topic in Discussing Manual Installation for Apache2 with MySQL Logging
So the events are being logged but the date is not being updated? -
BASE runs fine on PHP5 when there is a fresh install of any of the supported windows operating system, and the tutorial is followed exactly as instructed. There could be problems installing the Windows Intrusion Detection System on an existing supported, or unsupported Windows operating system. Make SURE configuring PHP is followed exactly as outlined in the tutorial.
