[Oisf-users] Errors configuring a suricata sensor

Chris Wakelin c.d.wakelin at reading.ac.uk
Sun Apr 3 19:10:40 UTC 2011


On 03/04/2011 19:18, carlopmart wrote:
>
> # The default order is pass, drop, reject, alert
> action-order:
>           - pass
>           - drop
>           - reject
>           - alert
>
> # The default logging directory.
> default-log-dir: /nsm/sensor_data/idsmgmt
>
>    Line 6 is the "action-order" param. What am I doing wrong??
>
> Thanks.

Spacing is crucial and has caught me out several times! Don't put extra 
spaces before the "-" lines.

Best Wishes,
Chris

-- 
--+---+---+---+---+---+---+---+---+---+---+---+---+---+---+---+---+---+-
Christopher Wakelin,                           c.d.wakelin at reading.ac.uk
IT Services Centre, The University of Reading,  Tel: +44 (0)118 378 8439
Whiteknights, Reading, RG6 2AF, UK              Fax: +44 (0)118 975 3094



More information about the Oisf-users mailing list