25 Commits

Author SHA1 Message Date
lteo
08ee37b8d7 Update to Snort 2.9.5.3, maintainer timeout
Re-enable support for non Ethernet decoders so that Snort can listen on
our pflog(4) interface again.

Tested on amd64 and i386.  Before the 64-bit time_t change, it was also
tested on amd64 and i386 (by myself and Adam Jeanguenat) and on macppc.
2013-08-21 02:28:42 +00:00
lteo
1deb2a50d4 Update to Snort 2.9.5, from maintainer Markus Lude.
Tested by Markus on sparc64; tested by me on amd64, i386, and macppc.
2013-07-10 02:10:22 +00:00
lteo
3f89ff5619 Update to Snort 2.9.4.6. Maintainer came up with the same diff.
Tested on sparc64 by maintainer, and on amd64, i386, and macppc by
myself.

OK Markus Lude (maintainer)
2013-05-31 20:26:00 +00:00
lteo
63a5e53699 Update to Snort 2.9.4.5, from Markus Lude (maintainer).
Tested by Markus on sparc64, and by myself on amd64 and i386.

OK sthen@
2013-04-23 02:04:13 +00:00
lteo
f4b5867610 Update to Snort 2.9.4.1.
Tested on amd64 and i386 by myself, and on 5.2/amd64 by Rodolfo Gouveia.

From Markus Lude (maintainer) with a tweak by me to remove PKGNAME which
is no longer needed.

"go ahead" sthen@
2013-03-29 04:22:59 +00:00
lteo
e1048a5d4e Update to Snort 2.9.4.0, from Markus Lude (maintainer).
Notable changes:

* Consolidation of IPv6 -- now only a single build supports both
  IPv4 & IPv6, and removal of the IPv4 "only" code paths.
* File API and improvements to file processing for HTTP downloads
  and email attachments via SMTP, POP, and IMAP to facilitate
  broader file support
* Use of address space ID for tracking Frag & Stream connections
  when it is available with the DAQ
* Logging of packet data that triggers PPM for post-analysis via
  Snort event
* Decoding of IPv6 with PPPoE

This commit also includes a patch to snort.conf that was done by myself
with feedback from Markus.  The snort.conf patch ensures that Snort will
load the latest Snort ruleset since the rule files have been reorganized
by upstream.  It also excludes local.rules by default, since rule
managers like Oinkmaster skip that file when downloading rules.

Tested by Markus on i386 and sparc64, Rodolfo Gouveia on 5.2/amd64 with
his own snort.conf, and myself on amd64 and i386.

OK sthen@
2013-01-16 04:52:53 +00:00
lteo
53898bf3e1 Make various improvements to the Snort port:
* Add an rc.d script.

* In snort.conf, provide the URL to the official Snort rules so that
  users know where to get them.

* In snort.conf, provide the URL to the Emerging Threats rules along
  with a commented include line to allow users to easily load the
  Emerging Threats rules if they wish.

* Revise pkg/README with details on where to obtain Snort rules, the
  differences between the official Snort rules and Emerging Threats
  rules, how to download them, and provide some guidance on setting up
  Snort.

snort.conf and README changes OK Markus Lude (maintainer), sthen@
rc.d script OK sthen@
2012-10-11 02:40:48 +00:00
lteo
8003eddd81 Update Snort to 2.9.3.1.
Thank you to all who tested: Markus Lude (sparc64), abieber@ (macppc),
and Adam Jeanguenat (i386); I also tested on amd64 and i386.  Thank you
to Rodolfo Gouveia for help/tests on earlier versions, and brad@ for
comments on an earlier version.

From Markus Lude (maintainer), and includes changes done based on
feedback from sthen@ and myself.

OK abieber@ sthen@
2012-09-26 02:11:05 +00:00
mcbride
f3c236e952 Support "new" pflog format (revision 1.16 of if_pflog.h, 2010/09/21)
ok sthen
2012-04-07 08:31:39 +00:00
sthen
95ea61be00 update to 2.8.6, from maintainer Markus Lude 2010-07-12 19:38:40 +00:00
rui
bba5dca8a9 update snort to 2.8.4.1. From Markus Lude (maintainer). 2009-08-16 13:31:27 +00:00
rui
5ec2bcefaf update snort to 2.8.3.2, from Markus Lude. 2009-02-12 22:12:08 +00:00
rui
22c160ac23 - update to snort 2.8.0.1.
from Markus Lude with a few changes, tested by many including reyk@, jdixon@. Thanks.

ok landry@
2008-02-12 14:13:32 +00:00
pvalchev
1fcfc6b7b2 Differentiate between struct timeval and bpf_timeval.. fixes
logging/alerting on 64-bit platforms.
From nikns@secure.lv
2006-11-25 05:33:28 +00:00
aanriot
8b39380162 - update to 2.6.0.2 .
- enable dynamicplugin / dynamic preprocessors.
- install documentation.
- fix instructions.
- USE_LIBTOOL.

update from nikns <nikns@secure.lv> with a few changes;
feedback and ok msf@
2006-10-10 13:33:17 +00:00
david
438d468147 update to snort-2.4.4 2006-04-12 22:03:47 +00:00
david
329cc9d75f zap 0 byte file 2006-02-04 17:48:20 +00:00
david
12ec3a6876 update to snort-2.4.3; ok sturm@ 2006-02-04 13:15:42 +00:00
david
ee5d974f4a Fixed issue with MySQL 5.0 and the schema keyword; from snort CVS
bump PKGNAME
2006-01-04 04:15:18 +00:00
sturm
28d49a65fd update to snort 2.3.3
from Jason Crawford <jasonrcrawford at gmail.com>
2005-06-29 06:01:38 +00:00
mjc
4ffe61de6c cope with new libnet port (flavours can run, but they can't hide)
ok pvalchev@ msf@
2005-05-24 04:39:05 +00:00
sturm
53929a0feb cvs sux and pointers are long not int
ok maintainer
2004-04-12 14:58:55 +00:00
sturm
42572a3821 update to snort 2.1.2
from maintainer Brian Caswell <bmc at openbsd.org>, tweaks by yours truly
2004-04-12 14:56:31 +00:00
pvalchev
5ce38b7667 fix 64bit issues; Brian Poole & bmc 2003-09-03 21:32:33 +00:00
pvalchev
c411447a30 fix sparc/sparc64 detection; pointed out in spp_stream4 by Brandon Williams; ok bmc 2003-06-24 17:02:38 +00:00