Shirkdog

Results 34 comments of Shirkdog

I am not seeing this issue, but there is something with this process that does not work correctly. so not an issue with removing signatures from local.rules, but not actually...

If this is still an issue, try with the latest master copy of the script. If it is still happening, I will need to match your perl command line and...

Can you provide an example of the specific log entry and how you think the timestamp should look?

Need to look at this as an enhancement that applies to Snort rules, to be able to manipulate the signatures based on the policies metadata.

I now have the ability to test all rulesets, it appears ignoring is not currently working for anything. This will be the use-case for how things should be working.

For now, moving this to 0.7.3, as this will take longer to resolve.

Can you provide some details on this, a workflow that should work but does not?

I believe the original intent was to only reload Snort if there were in fact new IPs that need to be loaded into the running binary. The check "!$NoDownload" achieves...

Believe this was implemented.

Will check that this works as such.