[7.911][BUG][FIXED] IPS causing the box not to pass traffic.

As soon as it starts, dead, and it stays that way.  Complains of a invalid argument in sid rule 0012182.

2010:05:31-11:53:45 qs-firewall snort[6604]: Enabling inline operation

2010:05:31-11:53:45 qs-firewall snort[6604]: NFQUEUE ID set to: 0
2010:05:31-11:53:45 qs-firewall snort[6604]: Running in IDS mode
2010:05:31-11:53:45 qs-firewall snort[6604]: 
2010:05:31-11:53:45 qs-firewall snort[6604]:         --== Initializing Snort ==--
2010:05:31-11:53:45 qs-firewall snort[6604]: Initializing Output Plugins!
2010:05:31-11:53:45 qs-firewall snort[6604]: Initializing Preprocessors!
2010:05:31-11:53:45 qs-firewall snort[6604]: Initializing Plug-ins!
2010:05:31-11:53:45 qs-firewall snort[6604]: Parsing Rules file "/etc/snort/snort.conf"



2010:05:31-11:53:45 qs-firewall snort[6604]:     Max Header Line Length: 1000
2010:05:31-11:53:45 qs-firewall snort[6604]:     Max Response Line Length: 512
2010:05:31-11:53:45 qs-firewall snort[6604]:     X-Link2State Alert: Yes
2010:05:31-11:53:45 qs-firewall snort[6604]:     Drop on X-Link2State Alert: No
2010:05:31-11:53:45 qs-firewall snort[6604]:     Alert on commands: None
2010:05:31-11:53:45 qs-firewall snort[6604]: 
2010:05:31-11:53:45 qs-firewall snort[6604]: +++++++++++++++++++++++++++++++++++++++++++++++++++
2010:05:31-11:53:45 qs-firewall snort[6604]: Initializing rule chains...
2010:05:31-11:53:46 qs-firewall snort[6604]: FATAL ERROR: /etc/snort/rules/astaro.rules(5877) Invalid argument to 'sid' rule option: 0012182.  Must be a positive integer.
Parents Reply Children