128 Commits

Author SHA1 Message Date
naddy
3f5796b9fd drop RCS Ids 2022-03-11 19:45:43 +00:00
sthen
2df77cb2a0 commit patch which I missed due to a rejected diff
noop change, it was only a regen
2022-02-22 23:28:32 +00:00
sthen
32091741fc update to snort-2.9.19, from Markus Lude (maintainer), ok kmos 2022-02-22 23:14:30 +00:00
sthen
3f02671408 update snort 2.9.18->2.9.18.1, and disable appid code on archs which
don't have LuaJIT (rather than disabling the whole snort port)
From Markus Lude
2021-09-19 10:18:25 +00:00
lteo
7cef80b17b Update to Snort 2.9.18, from maintainer Markus Lude 2021-07-11 02:11:34 +00:00
lteo
7970ea86d1 Update to Snort 2.9.17.1, from maintainer Markus Lude 2021-04-07 02:00:52 +00:00
naddy
26bb131cae Update to Snort 2.9.17, with a fix for -fno-common
From maintainer Markus Lude
Add missing patch.
2021-02-18 20:14:22 +00:00
lteo
aa630258e6 Update to Snort 2.9.17, with a fix for -fno-common
From maintainer Markus Lude
2021-02-16 03:02:37 +00:00
lteo
9ed98be8dd Update to Snort 2.9.16.
Also includes a suggestion from sthen@ to use LIBTOOL_FLAGS=--tag=disable-static
to remove static libraries which based on my tests are not needed by Snort.

reads fine to maintainer Markus Lude
2020-05-27 02:32:10 +00:00
lteo
8d6f0f59c5 Update to Snort 2.9.15, from maintainer Markus Lude. 2019-12-01 03:19:10 +00:00
lteo
ccbf3832f4 Update to Snort 2.9.14.1, from maintainer Markus Lude. 2019-08-29 02:47:15 +00:00
lteo
dae5f1c7c4 Update to Snort 2.9.14.
Also link libsf_appid_preproc.so against libc++abi so that luajit can access
libunwind symbols, and regen patches and WANTLIB.

tested by abieber@
ok abieber@, Markus Lude (maintainer)
2019-07-24 02:15:57 +00:00
sthen
48b0b9660c replace simple PERMIT_PACKAGE_CDROM=Yes with PERMIT_PACKAGE=Yes 2019-07-12 20:48:23 +00:00
lteo
a231fe5be2 Update to Snort 2.9.13 from maintainer Markus Lude, with a note in
patch-src_dynamic-plugins_sf_engine_Makefile_in to indicate that
libsf_sorules is disabled.
2019-06-02 02:07:44 +00:00
sthen
9890e792f2 update to snort-2.9.12, from maintainer Markus Lude plus one tweak to
fix #!/bin/bash on a script which is very much a bash-only script.
2019-02-12 22:19:52 +00:00
espie
f4b7f81318 convert to PKGSTEM 2018-09-04 12:46:09 +00:00
lteo
c954675ae6 Update to Snort 2.9.11.1, maintainer timeout.
Also sync pkg/README with reality, add daemon_timeout=120 to the rc.d
script (since Snort can take a while to start with the current rules),
and update/regenerate patches.
2018-01-28 03:09:12 +00:00
rpe
9a8b5ccd06 Change the shebang line from /bin/sh to /bin/ksh in all ports rc.d
daemon scripts and bump subpackages that contain the *.rc scripts.

discussed with and OK aja@
OK tb
2018-01-11 19:27:01 +00:00
ajacoutot
c7880b7d4a nghttp2 gets picked-up (so build fails in bulks because since it's not a
registered dependency, dpb(1) remove it in the middle of the build)
2017-01-23 11:22:58 +00:00
lteo
7d5158e4cd Update to Snort 2.9.9.0.
Maintainer timeout.
2017-01-05 03:08:04 +00:00
lteo
3e5597e79f Update to Snort 2.9.8.3. Also remove README.session from PLIST since it no
longer exists.

Tested on amd64 by myself and on i386 by maintainer.

ok Markus Lude (maintainer)
2016-10-02 02:06:19 +00:00
lteo
bea74a6d55 Update to Snort 2.9.8.2.
Other minor changes:
- Shortened a line in pkg/README so that portcheck won't complain.
- Replaced "/var" with ${LOCALSTATEDIR} in pkg/snort.rc.
- Regenerated patches.

Tested on amd64 by myself and on i386 by Markus Lude.
Tests were done with DAQ 2.0.6.

ok Markus Lude (maintainer)
2016-05-02 02:29:58 +00:00
naddy
071c34fd6f remove SHARED_ONLY from ports that use only the gnu module 2016-03-16 21:19:37 +00:00
naddy
ce859edcb4 garbage collect CONFIGURE_SHARED 2016-03-11 20:28:21 +00:00
lteo
a488cf2af2 Update to Snort 2.9.7.3, from maintainer Markus Lude.
Tested on i386 and build tested on sparc64 by Markus; tested on amd64 by
myself.  Tests were done with DAQ 2.0.5.
2015-05-29 03:28:18 +00:00
naddy
6bb8d0674b Drop USE_GROFF from ports where the formatting differences are acceptable
or mandoc provides the more useful output.
2015-02-16 22:57:07 +00:00
lteo
866dcb2a7b Update to Snort 2.9.7.0.
Tested by maintainer on i386, and by myself on amd64.

joint work with maintainer Markus Lude
nudged by sthen@
2015-01-24 03:52:53 +00:00
lteo
647d6da79e tcpdump is in section 8 on OpenBSD, not section 1. 2014-10-05 19:23:00 +00:00
lteo
d2348e3634 Update to Snort 2.9.6.2 (and its MASTER_SITES).
Tested by myself on amd64, i386, macppc, and sparc64; tested by
Markus Lude on sparc64.

ok Markus Lude (maintainer)
2014-08-19 04:22:53 +00:00
lteo
ebad481f50 Due to checksum offload, Snort might see bad checksums in outbound
packets since those checksums are not calculated until after Snort sees
those packets.

This causes Snort to discard those packets instead of processing them,
which in turn prevents Snort from triggering alerts for them.

To fix this, set checksum_mode to "none" in snort.conf to disable
Snort's checksum verification feature.

Looks OK to maintainer Markus Lude.
2014-06-04 03:17:12 +00:00
lteo
57f5496602 Update to Snort 2.9.6.1, from maintainer Markus Lude.
Tested on amd64 and i386 by myself.
2014-05-15 20:11:43 +00:00
lteo
fe1ba045cb Update to Snort 2.9.6.0, from maintainer Markus Lude.
Tested on sparc64 by Markus; tested on amd64 and macppc by myself.
2014-01-30 03:23:48 +00:00
lteo
0696392dcc Update to Snort 2.9.5.6, from maintainer Markus Lude.
Special thanks to Bhagya Bantwal of Sourcefire for a patch to fix
crashes on sparc64 on first alert.

Tested on sparc64 by Markus; tested on amd64, i386, and macppc by me.
2013-12-16 03:32:39 +00:00
lteo
c82b01e867 Update to Snort 2.9.5.5 and fix the ownership of the rc.d script, from
maintainer Markus Lude.

Tested by me on amd64, i386, and macppc.
2013-09-24 02:35:23 +00:00
lteo
08ee37b8d7 Update to Snort 2.9.5.3, maintainer timeout
Re-enable support for non Ethernet decoders so that Snort can listen on
our pflog(4) interface again.

Tested on amd64 and i386.  Before the 64-bit time_t change, it was also
tested on amd64 and i386 (by myself and Adam Jeanguenat) and on macppc.
2013-08-21 02:28:42 +00:00
lteo
1deb2a50d4 Update to Snort 2.9.5, from maintainer Markus Lude.
Tested by Markus on sparc64; tested by me on amd64, i386, and macppc.
2013-07-10 02:10:22 +00:00
lteo
3f89ff5619 Update to Snort 2.9.4.6. Maintainer came up with the same diff.
Tested on sparc64 by maintainer, and on amd64, i386, and macppc by
myself.

OK Markus Lude (maintainer)
2013-05-31 20:26:00 +00:00
lteo
63a5e53699 Update to Snort 2.9.4.5, from Markus Lude (maintainer).
Tested by Markus on sparc64, and by myself on amd64 and i386.

OK sthen@
2013-04-23 02:04:13 +00:00
lteo
f4b5867610 Update to Snort 2.9.4.1.
Tested on amd64 and i386 by myself, and on 5.2/amd64 by Rodolfo Gouveia.

From Markus Lude (maintainer) with a tweak by me to remove PKGNAME which
is no longer needed.

"go ahead" sthen@
2013-03-29 04:22:59 +00:00
ajacoutot
58f1a6f9f6 USE_LIBTOOL=Yes is the default now. 2013-03-21 08:45:11 +00:00
espie
eae66e4a7b PERMIT_* / REGRESS->TEST sweep 2013-03-11 11:35:43 +00:00
lteo
defa405c2c Update pkg/README to change the Snort ruleset download URL from HTTP to
HTTPS to protect the oinkcode from being exposed (suggested by David
Hill).

Also add a note that registered users without a paid subscription are
only allowed to download the official Snort ruleset once every 15
minutes (suggested by Adam Jeanguenat).  This restriction is not obvious
on the snort.org site, so I think this note would be helpful to users.

OK Markus Lude (maintainer), sthen@
2013-03-04 04:23:18 +00:00
lteo
e1048a5d4e Update to Snort 2.9.4.0, from Markus Lude (maintainer).
Notable changes:

* Consolidation of IPv6 -- now only a single build supports both
  IPv4 & IPv6, and removal of the IPv4 "only" code paths.
* File API and improvements to file processing for HTTP downloads
  and email attachments via SMTP, POP, and IMAP to facilitate
  broader file support
* Use of address space ID for tracking Frag & Stream connections
  when it is available with the DAQ
* Logging of packet data that triggers PPM for post-analysis via
  Snort event
* Decoding of IPv6 with PPPoE

This commit also includes a patch to snort.conf that was done by myself
with feedback from Markus.  The snort.conf patch ensures that Snort will
load the latest Snort ruleset since the rule files have been reorganized
by upstream.  It also excludes local.rules by default, since rule
managers like Oinkmaster skip that file when downloading rules.

Tested by Markus on i386 and sparc64, Rodolfo Gouveia on 5.2/amd64 with
his own snort.conf, and myself on amd64 and i386.

OK sthen@
2013-01-16 04:52:53 +00:00
naddy
84b182bdd2 switch configure style to gnu; ok lteo@ 2012-10-25 19:52:16 +00:00
naddy
e8b8229996 don't pick up gmkdir; ok lteo@, maintainer 2012-10-23 19:29:25 +00:00
lteo
53898bf3e1 Make various improvements to the Snort port:
* Add an rc.d script.

* In snort.conf, provide the URL to the official Snort rules so that
  users know where to get them.

* In snort.conf, provide the URL to the Emerging Threats rules along
  with a commented include line to allow users to easily load the
  Emerging Threats rules if they wish.

* Revise pkg/README with details on where to obtain Snort rules, the
  differences between the official Snort rules and Emerging Threats
  rules, how to download them, and provide some guidance on setting up
  Snort.

snort.conf and README changes OK Markus Lude (maintainer), sthen@
rc.d script OK sthen@
2012-10-11 02:40:48 +00:00
sthen
13a60063fd use a better MASTER_SITES, as pointed out by Adam Jeanguenat. 2012-09-28 19:30:54 +00:00
lteo
8003eddd81 Update Snort to 2.9.3.1.
Thank you to all who tested: Markus Lude (sparc64), abieber@ (macppc),
and Adam Jeanguenat (i386); I also tested on amd64 and i386.  Thank you
to Rodolfo Gouveia for help/tests on earlier versions, and brad@ for
comments on an earlier version.

From Markus Lude (maintainer), and includes changes done based on
feedback from sthen@ and myself.

OK abieber@ sthen@
2012-09-26 02:11:05 +00:00
jasper
905aa108f6 missing bump 2012-07-09 21:10:57 +00:00
sthen
15d1dad14a tedu the prelude support, pointed out by naddy 2012-07-09 12:58:16 +00:00