[Oisf-users] Suricata-update 1.0.0 messages

Russell Fulton r.fulton at auckland.ac.nz
Mon Nov 12 01:48:31 UTC 2018


I get the following warnings from suricata-update:

12/11/2018 -- 14:41:46 - <Info> -- Checking https://sslbl.abuse.ch/blacklist/sslblacklist.rules.md5.
12/11/2018 -- 14:41:48 - <Warning> -- Failed to check remote checksum: HTTP Error 503: Connection timed out
12/11/2018 -- 14:41:48 - <Info> -- Fetching https://sslbl.abuse.ch/blacklist/sslblacklist.rules.
12/11/2018 -- 14:41:50 - <Warning> -- Failed to fetch https://sslbl.abuse.ch/blacklist/sslblacklist.rules, will use latest cached version: HTTP Error 503: Connection timed out
…….
12/11/2018 -- 14:41:50 - <Info> -- Loading local file /var/lib/suricata/rules/local.rules
12/11/2018 -- 14:41:50 - <Warning> -- No distribution rule directory found.


I first disabled the sslbl source and then removed it but I still get these messages?  

I am puzzled about the "distribution rule directory” what is it?    I am guessing that it is related to the fact that I use file:// to load by ET rules.

Russell


More information about the Oisf-users mailing list