OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • suricata failing (given up, old, not-relevant anymore)
« previous next »
  • Print
Pages: [1]

Author Topic: suricata failing (given up, old, not-relevant anymore)  (Read 7032 times)

Noci

  • Newbie
  • *
  • Posts: 3
  • Karma: 0
    • View Profile
suricata failing (given up, old, not-relevant anymore)
« on: November 28, 2021, 09:41:37 pm »
I am exploring what suits my needs, and IDS (suricata) just doesn't work...

When logging on the command line, running suricate tells libnetmap.so.5 is missing.
Also there seems to be no library libnetmap to be available to install.

This was a fresh install from ISO + update.

opnsense is 21.7.6
suricata is 6.0.4

root@OPNsense:~ # suricata
ld-elf.so.1: Shared object "libnetmap.so.5" not found, required by "suricata"
« Last Edit: April 09, 2023, 02:41:55 pm by Noci »
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17743
  • Karma: 1620
    • View Profile
Re: suricata failing
« Reply #1 on: December 13, 2021, 12:58:23 pm »
I suspect health audit will tell you the base/kernel versions are incorrect.


Cheer,
Franco
Logged

Julien

  • Hero Member
  • *****
  • Posts: 666
  • Karma: 33
    • View Profile
Re: suricata failing
« Reply #2 on: December 14, 2021, 03:13:33 pm »
Quote from: franco on December 13, 2021, 12:58:23 pm
I suspect health audit will tell you the base/kernel versions are incorrect.


Cheer,
Franco

Hi Franco. for me the same its crashes and i have to start it manually from time to time.
how can i troubleshoot it ?
Logged
OPNsense 23.1.7_3-amd64
FreeBSD 13.1-RELEASE-p7
OpenSSL 1.1.1t 7 Feb 2023

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17743
  • Karma: 1620
    • View Profile
Re: suricata failing
« Reply #3 on: December 14, 2021, 03:18:34 pm »
It's not the same issue. If the author would post the health audit result you could compare.


Cheers,
Franco
Logged

Julien

  • Hero Member
  • *****
  • Posts: 666
  • Karma: 33
    • View Profile
Re: suricata failing
« Reply #4 on: December 14, 2021, 03:27:11 pm »
Quote from: franco on December 14, 2021, 03:18:34 pm
It's not the same issue. If the author would post the health audit result you could compare.


Cheers,
Franco
thank you for your answer.

where can i find those health audit result ?
Logged
OPNsense 23.1.7_3-amd64
FreeBSD 13.1-RELEASE-p7
OpenSSL 1.1.1t 7 Feb 2023

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17743
  • Karma: 1620
    • View Profile
Re: suricata failing
« Reply #5 on: December 14, 2021, 03:29:30 pm »
I'm neither seeing the author's results nor yours. I'm assuming the author doesn't have libnetmap libraries installed (partial update) and for you it's all there. That's as far as I'm willing to go.


Cheers,
Franco
Logged

Julien

  • Hero Member
  • *****
  • Posts: 666
  • Karma: 33
    • View Profile
Re: suricata failing
« Reply #6 on: December 14, 2021, 04:14:00 pm »
Quote from: franco on December 14, 2021, 03:29:30 pm
I'm neither seeing the author's results nor yours. I'm assuming the author doesn't have libnetmap libraries installed (partial update) and for you it's all there. That's as far as I'm willing to go.


Cheers,
Franco

well what can i say,
thanks anyway
Logged
OPNsense 23.1.7_3-amd64
FreeBSD 13.1-RELEASE-p7
OpenSSL 1.1.1t 7 Feb 2023

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17743
  • Karma: 1620
    • View Profile
Re: suricata failing
« Reply #7 on: December 14, 2021, 04:22:43 pm »
You could say "here's my health audit output" and attach the health audit output.

Then I can say: look, there's no problem there.

And then we can both move on?


Cheers,
Franco
Logged

FullyBorked

  • Sr. Member
  • ****
  • Posts: 353
  • Karma: 24
    • View Profile
Re: suricata failing
« Reply #8 on: December 14, 2021, 04:31:59 pm »
Feel like we are gatekeeping somewhat.  No instructions for performing the audit.  No big deal some folks are new and just don't know yet.  Please run this audit and post the results to this thread. 

To run the audit:
  • System > Firmware > Status
  • Run an audit (buttom at bottom)
  • Select health from dropdown.



Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17743
  • Karma: 1620
    • View Profile
Re: suricata failing
« Reply #9 on: December 14, 2021, 04:37:39 pm »
I agree when looking at this thread in isolation, but in general there's documentation for this.

https://docs.opnsense.org/troubleshooting.html


Cheers,
Franco
Logged

Julien

  • Hero Member
  • *****
  • Posts: 666
  • Karma: 33
    • View Profile
Re: suricata failing
« Reply #10 on: December 14, 2021, 05:31:24 pm »
Quote from: franco on December 14, 2021, 04:22:43 pm
You could say "here's my health audit output" and attach the health audit output.

Then I can say: look, there's no problem there.

And then we can both move on?


Cheers,
Franco
i already moved on bro,
i've been asking i dont know to find the logs and you anser is 
Code: [Select]
That's as far as I'm willing to go.if i knew how i would of done it without bothering you with my questions.
i remember pfsense start showing this attitude like those answer on theirs forum,
we support the project from day one, we buy the hardware / we call for support and we pay to support the project.


the below is a normal and polite answer.
Quote from: FullyBorked on December 14, 2021, 04:31:59 pm
Feel like we are gatekeeping somewhat.  No instructions for performing the audit.  No big deal some folks are new and just don't know yet.  Please run this audit and post the results to this thread. 

To run the audit:
  • System > Firmware > Status
  • Run an audit (buttom at bottom)
  • Select health from dropdown.

Thank you Fully

Code: [Select]
***GOT REQUEST TO AUDIT HEALTH***
Currently running OPNsense 21.7.6 (amd64/OpenSSL) at Tue Dec 14 17:32:33 CET 2021
>>> Check installed kernel version
Version 21.7.5 is correct.
>>> Check for missing or altered kernel files
No problems detected.
>>> Check installed base version
Version 21.7.5 is correct.
>>> Check for missing or altered base files
No problems detected.
>>> Check for missing package dependencies
Checking all packages: .......... done
>>> Check for missing or altered package files
Checking all packages: .......... done
>>> Check for core packages consistency
Core package "opnsense" has 66 dependencies to check.
Checking packages: .................................................................... done
***DONE***
« Last Edit: December 14, 2021, 05:37:30 pm by Julien »
Logged
OPNsense 23.1.7_3-amd64
FreeBSD 13.1-RELEASE-p7
OpenSSL 1.1.1t 7 Feb 2023

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17743
  • Karma: 1620
    • View Profile
Re: suricata failing
« Reply #11 on: December 14, 2021, 05:38:14 pm »
Yes, no problem in your system files so this thread is for a different issue.


Cheers,
Franco
Logged

Julien

  • Hero Member
  • *****
  • Posts: 666
  • Karma: 33
    • View Profile
Re: suricata failing
« Reply #12 on: December 14, 2021, 05:44:04 pm »
Quote from: franco on December 14, 2021, 04:37:39 pm
I agree when looking at this thread in isolation, but in general there's documentation for this.

https://docs.opnsense.org/troubleshooting.html


Cheers,
Franco

i feel like i hijacked someone else post. i am sorry about this.
Logged
OPNsense 23.1.7_3-amd64
FreeBSD 13.1-RELEASE-p7
OpenSSL 1.1.1t 7 Feb 2023

Noci

  • Newbie
  • *
  • Posts: 3
  • Karma: 0
    • View Profile
Re: suricata failing
« Reply #13 on: April 09, 2023, 02:38:32 pm »
After thought.. after seeing non-movement on this issue after a week i gave up on it (OpnSense) then.
As being no alternative for what i had then.

Looking into OpnSense again, this issue is closed.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • suricata failing (given up, old, not-relevant anymore)
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2