> Prelude-VM# prelude-manager
> Subscribing Normalize to active decoding plugins.
> server started (listening on 127.0.0.1 port 4690).
> Subscribing db[default] to active reporting plugins.
>
> and it stop here, what i do wrong?
> Someone can help me?
>
The Prelude Manager is NOT a sensor! It only recieves data
from the
sensor(s) (e.g. Prelude-LML, Snort, Samhain, etc) and put
them into the
database.
By the look of it, it works fine. You now need to install
one of the
following sensors:
- Prelude-LML: /usr/ports/security/prelude-lml
- Snort: /usr/ports/security/snort
- Samhain: /usr/ports/security/samhain
- Nepenthes: /usr/ports/net/nepenthes
Kind regards,
--
Robin Gruyters
Network and Security Engineer
Yirdis
I: http://yirdis.com
P: +31 (0)20 5659191
F: +31 (0)20 5659190
On Fri, Aug 24, 2007 at 03:05:36PM -0400, FRANCIS PROVENCHER
wrote:
> Hi all, i'v installed by port's tree Prelude-ids (with
libprelude and
> libpreludedb) on a Freebsd 6.2 box.
>
> $ cat distinfo
> MD5 (prelude-manager-0.9.9.tar.gz) =
ca9258faadb7306863dffeac8f855161
> SHA256 (prelude-manager-0.9.9.tar.gz) =
>
734bd844df4e337cb989ea9700d60ca2d0eae03a5b0e97a5559b3addb249
8ec6
> SIZE (prelude-manager-0.9.9.tar.gz) = 647696
>
> I want to lunch the manager after the installation;
>
> Prelude-VM# prelude-manager
> Subscribing Normalize to active decoding plugins.
> prelude-client: error initializing prelude-client:
could not open
>
'/usr/local/etc/prelude/profile/prelude-manager/analyzerid'
for reading
>
> Profile 'prelude-manager' does not exist. In order to
create it, please
> run:
> prelude-adduser add prelude-manager --uid 0 --gid 0.
> Prelude-VM# prelude-adduser add prelude-manager --uid 0
--gid 0
>
> - Using default TLS settings from
> /usr/local/etc/prelude/default/tls.conf:
> - Generated key size: 1024 bits.
> - Authority certificate lifetime: unlimited.
> - Generated certificate lifetime: unlimited.
>
> - Creating analyzer prelude-manager.
> - Creating
/usr/local/etc/prelude/profile/prelude-manager...
> - Allocated ident for prelude-manager:
416136274322908.
> - Generating RSA private key... This might take a
very long time.
> [Increasing system activity will speed-up the
process.]
>
> - Generating 1024 bits RSA private key... Done.
>
> - Using /var/spool/prelude/prelude-manager...
> Prelude-VM# prelude-manager
> Subscribing Normalize to active decoding plugins.
> server started (listening on 127.0.0.1 port 4690).
> Subscribing db[default] to active reporting plugins.
>
> and it stop here, what i do wrong?
> Someone can help me?
>
>
>
> Francis Provencher
> Minist?re de la S?curit? publique du Qu?bec
> Direction des technologies de l'information
> Division de la s?curit? informatique
> T?l: 1 418 646-3258
> Courriel: Francis.provencher Msp.gouv.qc.ca
>
> CEH - Certified Ethical Hackers
> SSCP - System Security Certified Practitionner
> Sec+ - Security +
> BEGIN:VCARD
> VERSION:2.1
> X-GWTYPE:USER
> FN:FRANCIS PROVENCHER
> ORG:;DGSG/DTIA
> EMAIL;WORK;PREF;NGW:PROF01.SPSSO410 msp.gouv.qc.ca
> N:PROVENCHER;FRANCIS
> END:VCARD
>
> _______________________________________________
> Prelude-user site list
> Prelude-user prelude-ids.org
> http://www.prelude-ids.org/mailman/listinfo/prelude-user
_______________________________________________
Prelude-user site list
Prelude-user prelude-ids.org
http://www.prelude-ids.org/mailman/listinfo/prelude-user
|