[Oisf-users] Empty http.log file

Victor Julien victor at inliniac.net
Tue Jul 10 14:12:02 UTC 2012


On 07/10/2012 04:08 PM, kay wrote:
> 10/7/2012 -- 18:02:30 - <Info> - NFQ running in REPEAT mode with mark 0/0
> 10/7/2012 -- 18:02:39 - <Info> - Packet seems already treated by suricata
> 10/7/2012 -- 18:02:39 - <Info> - Packet seems already treated by suricata
> 10/7/2012 -- 18:02:39 - <Info> - Packet seems already treated by suricata
> 10/7/2012 -- 18:02:39 - <Info> - Packet seems already treated by suricata
> 10/7/2012 -- 18:02:39 - <Info> - Packet seems already treated by suricata

I think the mark you set if wrong. Can you set it to 1/1 in the yaml?

-- 
---------------------------------------------
Victor Julien
http://www.inliniac.net/
PGP: http://www.inliniac.net/victorjulien.asc
---------------------------------------------






More information about the Oisf-users mailing list