OVH Cloud OVH Cloud

Problème snortsnarf...

1 réponse
Avatar
Vincent RIEDWEG
Bonjour à tous,

J'ai un petit comportement pénible avec snortsnarf. Snortsnarf fonctionne
mais je reçoit un mail toutes les heures qui contient les lignes suivantes
et je ne trouve rien avec google. Des idées?

MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x8489cd0)month: *undef*
MemPacket=HASH(0x8489cd0)anom: *undef*
MemPacket=HASH(0x8489cd0)sip: *undef*
MemPacket=HASH(0x8489cd0)dport: *undef*
MemPacket=HASH(0x8489cd0)day: *undef*
MemPacket=HASH(0x8489cd0)id: SFIpacket612
MemPacket=HASH(0x8489cd0)tod_text: *undef*
MemPacket=HASH(0x8489cd0)sport: *undef*
MemPacket=HASH(0x8489cd0)dip: *undef*
MemPacket=HASH(0x8489cd0)year: 2004
MemPacket=HASH(0x8489cd0)month: *undef*
MemPacket=HASH(0x8489cd0)anom: *undef*
MemPacket=HASH(0x8489cd0)sip: *undef*
MemPacket=HASH(0x8489cd0)dport: *undef*
MemPacket=HASH(0x8489cd0)day: *undef*
MemPacket=HASH(0x8489cd0)id: SFIpacket612
MemPacket=HASH(0x8489cd0)tod_text: *undef*
MemPacket=HASH(0x8489cd0)sport: *undef*
MemPacket=HASH(0x8489cd0)dip: *undef*
MemPacket=HASH(0x8489cd0)year: 2004
MemPacket=HASH(0x84887a4)month: *undef*
MemPacket=HASH(0x84887a4)anom: *undef*
MemPacket=HASH(0x84887a4)sip: *undef*
MemPacket=HASH(0x84887a4)dport: *undef*
MemPacket=HASH(0x84887a4)day: *undef*
MemPacket=HASH(0x84887a4)id: SFIpacket602
MemPacket=HASH(0x84887a4)tod_text: *undef*
MemPacket=HASH(0x84887a4)sport: *undef*
MemPacket=HASH(0x84887a4)dip: *undef*
MemPacket=HASH(0x84887a4)year: 2004
MemPacket=HASH(0x84887a4)month: *undef*
MemPacket=HASH(0x84887a4)anom: *undef*
MemPacket=HASH(0x84887a4)sip: *undef*
MemPacket=HASH(0x84887a4)dport: *undef*
MemPacket=HASH(0x84887a4)day: *undef*
MemPacket=HASH(0x84887a4)id: SFIpacket602
MemPacket=HASH(0x84887a4)tod_text: *undef*
MemPacket=HASH(0x84887a4)sport: *undef*
MemPacket=HASH(0x84887a4)dip: *undef*
MemPacket=HASH(0x84887a4)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x8489230)month: *undef*
MemPacket=HASH(0x8489230)anom: *undef*
MemPacket=HASH(0x8489230)sip: *undef*
MemPacket=HASH(0x8489230)dport: *undef*
MemPacket=HASH(0x8489230)day: *undef*
MemPacket=HASH(0x8489230)id: SFIpacket607
MemPacket=HASH(0x8489230)tod_text: *undef*
MemPacket=HASH(0x8489230)sport: *undef*
MemPacket=HASH(0x8489230)dip: *undef*
MemPacket=HASH(0x8489230)year: 2004
MemPacket=HASH(0x8489230)month: *undef*
MemPacket=HASH(0x8489230)anom: *undef*
MemPacket=HASH(0x8489230)sip: *undef*
MemPacket=HASH(0x8489230)dport: *undef*
MemPacket=HASH(0x8489230)day: *undef*
MemPacket=HASH(0x8489230)id: SFIpacket607
MemPacket=HASH(0x8489230)tod_text: *undef*
MemPacket=HASH(0x8489230)sport: *undef*
MemPacket=HASH(0x8489230)dip: *undef*
MemPacket=HASH(0x8489230)year: 2004
MemPacket=HASH(0x8489898)month: *undef*
MemPacket=HASH(0x8489898)anom: *undef*
MemPacket=HASH(0x8489898)sip: *undef*
MemPacket=HASH(0x8489898)dport: *undef*
MemPacket=HASH(0x8489898)day: *undef*
MemPacket=HASH(0x8489898)id: SFIpacket610
MemPacket=HASH(0x8489898)tod_text: *undef*
MemPacket=HASH(0x8489898)sport: *undef*
MemPacket=HASH(0x8489898)dip: *undef*
MemPacket=HASH(0x8489898)year: 2004
MemPacket=HASH(0x8489898)month: *undef*
MemPacket=HASH(0x8489898)anom: *undef*
MemPacket=HASH(0x8489898)sip: *undef*
MemPacket=HASH(0x8489898)dport: *undef*
MemPacket=HASH(0x8489898)day: *undef*
MemPacket=HASH(0x8489898)id: SFIpacket610
MemPacket=HASH(0x8489898)tod_text: *undef*
MemPacket=HASH(0x8489898)sport: *undef*
MemPacket=HASH(0x8489898)dip: *undef*
MemPacket=HASH(0x8489898)year: 2004
MemPacket=HASH(0x8489668)month: *undef*
MemPacket=HASH(0x8489668)anom: *undef*
MemPacket=HASH(0x8489668)sip: *undef*
MemPacket=HASH(0x8489668)dport: *undef*
MemPacket=HASH(0x8489668)day: *undef*
MemPacket=HASH(0x8489668)id: SFIpacket609
MemPacket=HASH(0x8489668)tod_text: *undef*
MemPacket=HASH(0x8489668)sport: *undef*
MemPacket=HASH(0x8489668)dip: *undef*
MemPacket=HASH(0x8489668)year: 2004
MemPacket=HASH(0x8489668)month: *undef*
MemPacket=HASH(0x8489668)anom: *undef*
MemPacket=HASH(0x8489668)sip: *undef*
MemPacket=HASH(0x8489668)dport: *undef*
MemPacket=HASH(0x8489668)day: *undef*
MemPacket=HASH(0x8489668)id: SFIpacket609
MemPacket=HASH(0x8489668)tod_text: *undef*
MemPacket=HASH(0x8489668)sport: *undef*
MemPacket=HASH(0x8489668)dip: *undef*
MemPacket=HASH(0x8489668)year: 2004
MemPacket=HASH(0x848944c)month: *undef*
MemPacket=HASH(0x848944c)anom: *undef*
MemPacket=HASH(0x848944c)sip: *undef*
MemPacket=HASH(0x848944c)dport: *undef*
MemPacket=HASH(0x848944c)day: *undef*
MemPacket=HASH(0x848944c)id: SFIpacket608
MemPacket=HASH(0x848944c)tod_text: *undef*
MemPacket=HASH(0x848944c)sport: *undef*
MemPacket=HASH(0x848944c)dip: *undef*
MemPacket=HASH(0x848944c)year: 2004
MemPacket=HASH(0x848944c)month: *undef*
MemPacket=HASH(0x848944c)anom: *undef*
MemPacket=HASH(0x848944c)sip: *undef*
MemPacket=HASH(0x848944c)dport: *undef*
MemPacket=HASH(0x848944c)day: *undef*
MemPacket=HASH(0x848944c)id: SFIpacket608
MemPacket=HASH(0x848944c)tod_text: *undef*
MemPacket=HASH(0x848944c)sport: *undef*
MemPacket=HASH(0x848944c)dip: *undef*
MemPacket=HASH(0x848944c)year: 2004
MemPacket=HASH(0x8488df8)month: *undef*
MemPacket=HASH(0x8488df8)anom: *undef*
MemPacket=HASH(0x8488df8)sip: *undef*
MemPacket=HASH(0x8488df8)dport: *undef*
MemPacket=HASH(0x8488df8)day: *undef*
MemPacket=HASH(0x8488df8)id: SFIpacket605
MemPacket=HASH(0x8488df8)tod_text: *undef*
MemPacket=HASH(0x8488df8)sport: *undef*
MemPacket=HASH(0x8488df8)dip: *undef*
MemPacket=HASH(0x8488df8)year: 2004
MemPacket=HASH(0x8488df8)month: *undef*
MemPacket=HASH(0x8488df8)anom: *undef*
MemPacket=HASH(0x8488df8)sip: *undef*
MemPacket=HASH(0x8488df8)dport: *undef*
MemPacket=HASH(0x8488df8)day: *undef*
MemPacket=HASH(0x8488df8)id: SFIpacket605
MemPacket=HASH(0x8488df8)tod_text: *undef*
MemPacket=HASH(0x8488df8)sport: *undef*
MemPacket=HASH(0x8488df8)dip: *undef*
MemPacket=HASH(0x8488df8)year: 2004
MemPacket=HASH(0x84ab5f4)month: *undef*
MemPacket=HASH(0x84ab5f4)anom: *undef*
MemPacket=HASH(0x84ab5f4)sip: *undef*
MemPacket=HASH(0x84ab5f4)dport: *undef*
MemPacket=HASH(0x84ab5f4)day: *undef*
MemPacket=HASH(0x84ab5f4)id: SFIpacket601
MemPacket=HASH(0x84ab5f4)tod_text: *undef*
MemPacket=HASH(0x84ab5f4)sport: *undef*
MemPacket=HASH(0x84ab5f4)dip: *undef*
MemPacket=HASH(0x84ab5f4)year: 2004
MemPacket=HASH(0x84ab5f4)month: *undef*
MemPacket=HASH(0x84ab5f4)anom: *undef*
MemPacket=HASH(0x84ab5f4)sip: *undef*
MemPacket=HASH(0x84ab5f4)dport: *undef*
MemPacket=HASH(0x84ab5f4)day: *undef*
MemPacket=HASH(0x84ab5f4)id: SFIpacket601
MemPacket=HASH(0x84ab5f4)tod_text: *undef*
MemPacket=HASH(0x84ab5f4)sport: *undef*
MemPacket=HASH(0x84ab5f4)dip: *undef*
MemPacket=HASH(0x84ab5f4)year: 2004
MemPacket=HASH(0x84889c0)month: *undef*
MemPacket=HASH(0x84889c0)anom: *undef*
MemPacket=HASH(0x84889c0)sip: *undef*
MemPacket=HASH(0x84889c0)dport: *undef*
MemPacket=HASH(0x84889c0)day: *undef*
MemPacket=HASH(0x84889c0)id: SFIpacket603
MemPacket=HASH(0x84889c0)tod_text: *undef*
MemPacket=HASH(0x84889c0)sport: *undef*
MemPacket=HASH(0x84889c0)dip: *undef*
MemPacket=HASH(0x84889c0)year: 2004
MemPacket=HASH(0x84889c0)month: *undef*
MemPacket=HASH(0x84889c0)anom: *undef*
MemPacket=HASH(0x84889c0)sip: *undef*
MemPacket=HASH(0x84889c0)dport: *undef*
MemPacket=HASH(0x84889c0)day: *undef*
MemPacket=HASH(0x84889c0)id: SFIpacket603
MemPacket=HASH(0x84889c0)tod_text: *undef*
MemPacket=HASH(0x84889c0)sport: *undef*
MemPacket=HASH(0x84889c0)dip: *undef*
MemPacket=HASH(0x84889c0)year: 2004
MemPacket=HASH(0x8488bdc)month: *undef*
MemPacket=HASH(0x8488bdc)anom: *undef*
MemPacket=HASH(0x8488bdc)sip: *undef*
MemPacket=HASH(0x8488bdc)dport: *undef*
MemPacket=HASH(0x8488bdc)day: *undef*
MemPacket=HASH(0x8488bdc)id: SFIpacket604
MemPacket=HASH(0x8488bdc)tod_text: *undef*
MemPacket=HASH(0x8488bdc)sport: *undef*
MemPacket=HASH(0x8488bdc)dip: *undef*
MemPacket=HASH(0x8488bdc)year: 2004
MemPacket=HASH(0x8488bdc)month: *undef*
MemPacket=HASH(0x8488bdc)anom: *undef*
MemPacket=HASH(0x8488bdc)sip: *undef*
MemPacket=HASH(0x8488bdc)dport: *undef*
MemPacket=HASH(0x8488bdc)day: *undef*
MemPacket=HASH(0x8488bdc)id: SFIpacket604
MemPacket=HASH(0x8488bdc)tod_text: *undef*
MemPacket=HASH(0x8488bdc)sport: *undef*
MemPacket=HASH(0x8488bdc)dip: *undef*
MemPacket=HASH(0x8488bdc)year: 2004
MemPacket=HASH(0x8489ab4)month: *undef*
MemPacket=HASH(0x8489ab4)anom: *undef*
MemPacket=HASH(0x8489ab4)sip: *undef*
MemPacket=HASH(0x8489ab4)dport: *undef*
MemPacket=HASH(0x8489ab4)day: *undef*
MemPacket=HASH(0x8489ab4)id: SFIpacket611
MemPacket=HASH(0x8489ab4)tod_text: *undef*
MemPacket=HASH(0x8489ab4)sport: *undef*
MemPacket=HASH(0x8489ab4)dip: *undef*
MemPacket=HASH(0x8489ab4)year: 2004
MemPacket=HASH(0x8489ab4)month: *undef*
MemPacket=HASH(0x8489ab4)anom: *undef*
MemPacket=HASH(0x8489ab4)sip: *undef*
MemPacket=HASH(0x8489ab4)dport: *undef*
MemPacket=HASH(0x8489ab4)day: *undef*
MemPacket=HASH(0x8489ab4)id: SFIpacket611
MemPacket=HASH(0x8489ab4)tod_text: *undef*
MemPacket=HASH(0x8489ab4)sport: *undef*
MemPacket=HASH(0x8489ab4)dip: *undef*
MemPacket=HASH(0x8489ab4)year: 2004
MemPacket=HASH(0x8489014)month: *undef*
MemPacket=HASH(0x8489014)anom: *undef*
MemPacket=HASH(0x8489014)sip: *undef*
MemPacket=HASH(0x8489014)dport: *undef*
MemPacket=HASH(0x8489014)day: *undef*
MemPacket=HASH(0x8489014)id: SFIpacket606
MemPacket=HASH(0x8489014)tod_text: *undef*
MemPacket=HASH(0x8489014)sport: *undef*
MemPacket=HASH(0x8489014)dip: *undef*
MemPacket=HASH(0x8489014)year: 2004
MemPacket=HASH(0x8489014)month: *undef*
MemPacket=HASH(0x8489014)anom: *undef*
MemPacket=HASH(0x8489014)sip: *undef*
MemPacket=HASH(0x8489014)dport: *undef*
MemPacket=HASH(0x8489014)day: *undef*
MemPacket=HASH(0x8489014)id: SFIpacket606
MemPacket=HASH(0x8489014)tod_text: *undef*
MemPacket=HASH(0x8489014)sport: *undef*
MemPacket=HASH(0x8489014)dip: *undef*
MemPacket=HASH(0x8489014)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004
MemPacket=HASH(0x84ab498)month: *undef*
MemPacket=HASH(0x84ab498)anom: *undef*
MemPacket=HASH(0x84ab498)sip: *undef*
MemPacket=HASH(0x84ab498)dport: *undef*
MemPacket=HASH(0x84ab498)day: *undef*
MemPacket=HASH(0x84ab498)id: SFIpacket600
MemPacket=HASH(0x84ab498)tod_text: *undef*
MemPacket=HASH(0x84ab498)sport: *undef*
MemPacket=HASH(0x84ab498)dip: *undef*
MemPacket=HASH(0x84ab498)year: 2004

Vincent.

1 réponse

Avatar
Vincent RIEDWEG
Bonsoir,

Ce n'est pas la peine de chercher, j'ai juste rajouté un |grep -v
MemPacket=HASH dans mon script...

Et comme il n'y a donc plus rien sur la sortie standard, cron ne m'envoi
donc plus de mail.

Vincent.