Michael Rash

Results 79 comments of Michael Rash

The biggest barrier is likely to be lack of iptables-save / iptables-restore.

The install.pl script should overwrite any existing fwsnort installation on your system. So, just run install.pl after git pull - no --force option should be needed.

I see, you need a non-interactive mode to install.pl. Are you primarily concerned about getting signature updates? If so, you can use 'fwsnort --update-rules'.

Thanks for pointing this out. Agreed that fwsnort needs to offer guidance on how to get it running under various Linux distros.

Agreed this is a bug. Will fix and send an update.

Thanks, this looks like a great addition. I will do some testing over the next couple of days.

Hello - the subject line has a configurable prefix according to these psad.conf variables: MAIL_ALERT_PREFIX [psad-alert]; MAIL_STATUS_PREFIX [psad-status]; MAIL_ERROR_PREFIX [psad-error]; MAIL_FATAL_PREFIX [psad-fatal]; The email body contains the psad alert content...

Glad you like psad - I'm always looking for ways to improve it. I do think it would be a nice feature to allow the psad alert body to be...

Sorry, got the issue number mixed up with that last commit.

The primary "source of truth" is what is encoded in the SPA message. This allows fwknop to support use cases such as using the fwknop to open a service for...