Jump to content

Recommended Posts

Posted

Okay, this is the second time I've run into this. I had the exact same results when I did the install using IIS and MySQL.  

 

  • I built by following line-for-line the posted instructions. 
  • Barnyard, snort winsql checks were all successful. 
  • Base starts up properly. 
  • Base shows ONLY updates from the first day it was running

 

The base home page (and any other pages I open) shows the red 'events updated' message periodically in the upper part of the page. I get nothing, however, when I click on the menu items for Today's events or date limited searches. I'm guessing it has something to do with base configuration, but I don't know what it might be. 

 

Any ideas are welcome, I'd be more than happy to try anything you can suggest. 

 

Flonk

  • 2 weeks later...
Posted

I ended up deleteing the log files to get it to correctly update the date. The events were correct but didn't have the correct date. I believe this is due to a corrupted waldo file.

To fix; use the Windows Intrusion Detection Systems security console and delete all the events.

Stop snort and Barnyard2 from the Task Manager,

Go into the d:\winids\snort\logs folder, delete all the files, and reboot.

 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...