Bug#910739: fwsnort: All rules fail to import

2024-05-12 Thread Nigel Horne
Package: fwsnort
Version: 1.6.8-1
Followup-For: Bug #910739

Dear Maintainer,

*** Reporter, please consider answering these questions, where appropriate ***

   * What led up to the situation?

   /sbin/iptables-restore < /var/lib/fwsnort/fwsnort.save

   * What exactly did you do (or not do) that was effective (or
 ineffective)?

 Ran the above command

   * What was the outcome of this action?

   # /sbin/iptables-restore < /var/lib/fwsnort/fwsnort.save
iptables-restore v1.8.10 (nf_tables): invalid port/service `!445' specified
Error occurred at line: 14081
Try `iptables-restore -h' or 'iptables-restore --help' for more information.

   * What outcome did you expect instead?

   That there would be no error messages and that it would work

*** End of the template - remove these template lines ***


-- System Information:
Debian Release: trixie/sid
  APT prefers testing
  APT policy: (500, 'testing'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 6.7.12-amd64 (SMP w/4 CPU threads; PREEMPT)
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8), 
LANGUAGE=en_GB:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages fwsnort depends on:
ii  debconf [debconf-2.0]   1.5.86
ii  iptables1.8.10-3
ii  libiptables-parse-perl  1.6-3
ii  libnet-rawip-perl   0.25-4
ii  libnetaddr-ip-perl  4.079+dfsg-2+b3
ii  perl5.38.2-4

Versions of packages fwsnort recommends:
ii  snort-rules-default  2.9.15.1-6

fwsnort suggests no packages.

-- debconf information:
  fwsnort/download: false



Bug#910739: fwsnort: All rules fail to import

2018-10-10 Thread Nigel Horne
Package: fwsnort
Version: 1.6.5-4
Severity: normal

I can't get any rules to import.  Here's what happens with update-rules
followed by an attempt to import.


root@njh:/etc/fwsnort# /usr/sbin/fwsnort --update-rules
[+] Downloading latest rules into /etc/fwsnort/snort_rules/--2018-10-10 
10:25:27--  http://rules.emergingthreats.net/open/snort-2.9.0/emerging-all.rules
Resolving rules.emergingthreats.net (rules.emergingthreats.net)... 
96.43.137.99, 204.12.217.19
Connecting to rules.emergingthreats.net 
(rules.emergingthreats.net)|96.43.137.99|:80... connected.
HTTP request sent, awaiting response... 200 OK
Length: 13880047 (13M)
Saving to: ‘emerging-all.rules’

emerging-all.rules  100%[===>]  13.24M  3.43MB/sin 12s

2018-10-10 10:25:40 (1.06 MB/s) - ‘emerging-all.rules’ saved [13880047/13880047]

[+] Finished.
root@njh:/etc/fwsnort# /usr/sbin/fwsnort
[+] Testing /sbin/iptables for supported capabilities...
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
Snort Rules File  Success   Fail  Total

[+] emerging-all.rules0 17510 17510
  =
  0 17510 17510

[+] No rules parsed.

[+] Logfile: /var/log/fwsnort/fwsnort.log
[-] No Snort rules could be translated, exiting
root@njh:/etc/fwsnort#

-- System Information:
Debian Release: 9.5
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: arm64 (aarch64)

Kernel: Linux 4.15.11-mainline-rev1 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL 
set to en_US.UTF-8), LANGUAGE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL set 
to en_US.UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages fwsnort depends on:
ii  debconf [debconf-2.0]   1.5.61
ii  iptables1.6.0+snapshot20161117-6
ii  libiptables-parse-perl  1.6-1
ii  libnet-rawip-perl   0.25-2+b2
ii  libnetaddr-ip-perl  4.079+dfsg-1+b1
ii  perl5.24.1-3+deb9u4

Versions of packages fwsnort recommends:
ii  snort-rules-default  2.9.7.0-5

fwsnort suggests no packages.

-- debconf information:
  fwsnort/download: false