Bug#910739: fwsnort: All rules fail to import
Package: fwsnort Version: 1.6.8-1 Followup-For: Bug #910739 Dear Maintainer, *** Reporter, please consider answering these questions, where appropriate *** * What led up to the situation? /sbin/iptables-restore < /var/lib/fwsnort/fwsnort.save * What exactly did you do (or not do) that was effective (or ineffective)? Ran the above command * What was the outcome of this action? # /sbin/iptables-restore < /var/lib/fwsnort/fwsnort.save iptables-restore v1.8.10 (nf_tables): invalid port/service `!445' specified Error occurred at line: 14081 Try `iptables-restore -h' or 'iptables-restore --help' for more information. * What outcome did you expect instead? That there would be no error messages and that it would work *** End of the template - remove these template lines *** -- System Information: Debian Release: trixie/sid APT prefers testing APT policy: (500, 'testing'), (500, 'stable') Architecture: amd64 (x86_64) Kernel: Linux 6.7.12-amd64 (SMP w/4 CPU threads; PREEMPT) Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8), LANGUAGE=en_GB:en Shell: /bin/sh linked to /usr/bin/dash Init: systemd (via /run/systemd/system) LSM: AppArmor: enabled Versions of packages fwsnort depends on: ii debconf [debconf-2.0] 1.5.86 ii iptables1.8.10-3 ii libiptables-parse-perl 1.6-3 ii libnet-rawip-perl 0.25-4 ii libnetaddr-ip-perl 4.079+dfsg-2+b3 ii perl5.38.2-4 Versions of packages fwsnort recommends: ii snort-rules-default 2.9.15.1-6 fwsnort suggests no packages. -- debconf information: fwsnort/download: false
Bug#910739: fwsnort: All rules fail to import
Package: fwsnort Version: 1.6.5-4 Severity: normal I can't get any rules to import. Here's what happens with update-rules followed by an attempt to import. root@njh:/etc/fwsnort# /usr/sbin/fwsnort --update-rules [+] Downloading latest rules into /etc/fwsnort/snort_rules/--2018-10-10 10:25:27-- http://rules.emergingthreats.net/open/snort-2.9.0/emerging-all.rules Resolving rules.emergingthreats.net (rules.emergingthreats.net)... 96.43.137.99, 204.12.217.19 Connecting to rules.emergingthreats.net (rules.emergingthreats.net)|96.43.137.99|:80... connected. HTTP request sent, awaiting response... 200 OK Length: 13880047 (13M) Saving to: ‘emerging-all.rules’ emerging-all.rules 100%[===>] 13.24M 3.43MB/sin 12s 2018-10-10 10:25:40 (1.06 MB/s) - ‘emerging-all.rules’ saved [13880047/13880047] [+] Finished. root@njh:/etc/fwsnort# /usr/sbin/fwsnort [+] Testing /sbin/iptables for supported capabilities... =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= Snort Rules File Success Fail Total [+] emerging-all.rules0 17510 17510 = 0 17510 17510 [+] No rules parsed. [+] Logfile: /var/log/fwsnort/fwsnort.log [-] No Snort rules could be translated, exiting root@njh:/etc/fwsnort# -- System Information: Debian Release: 9.5 APT prefers stable APT policy: (500, 'stable') Architecture: arm64 (aarch64) Kernel: Linux 4.15.11-mainline-rev1 (SMP w/4 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL set to en_US.UTF-8), LANGUAGE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL set to en_US.UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) Versions of packages fwsnort depends on: ii debconf [debconf-2.0] 1.5.61 ii iptables1.6.0+snapshot20161117-6 ii libiptables-parse-perl 1.6-1 ii libnet-rawip-perl 0.25-2+b2 ii libnetaddr-ip-perl 4.079+dfsg-1+b1 ii perl5.24.1-3+deb9u4 Versions of packages fwsnort recommends: ii snort-rules-default 2.9.7.0-5 fwsnort suggests no packages. -- debconf information: fwsnort/download: false