aboutsummaryrefslogtreecommitdiffstats
path: root/config/snort/snort.inc
diff options
context:
space:
mode:
authorErmal <eri@pfsense.org>2012-07-14 06:23:20 +0000
committerErmal <eri@pfsense.org>2012-07-14 06:23:20 +0000
commit9a4da8fc0de9f80f4a034d03506e8bfe9adceaaa (patch)
tree82699dc6a11ca1f12a838327560edabe463d3a0a /config/snort/snort.inc
parente429e827397d76777de7e76c2ef9d95d53cf624b (diff)
downloadpfsense-packages-9a4da8fc0de9f80f4a034d03506e8bfe9adceaaa.tar.gz
pfsense-packages-9a4da8fc0de9f80f4a034d03506e8bfe9adceaaa.tar.bz2
pfsense-packages-9a4da8fc0de9f80f4a034d03506e8bfe9adceaaa.zip
Switch to output alert_csv to fix all issues with snort alerts/blocked descr
Diffstat (limited to 'config/snort/snort.inc')
-rw-r--r--config/snort/snort.inc10
1 files changed, 5 insertions, 5 deletions
diff --git a/config/snort/snort.inc b/config/snort/snort.inc
index cc2cd3c6..e5ce43db 100644
--- a/config/snort/snort.inc
+++ b/config/snort/snort.inc
@@ -1283,10 +1283,10 @@ EOD;
foreach($enabled_rulesets_array as $enabled_item) {
if (substr($enabled_item, 0, 5) == "snort" && substr($enabled_item, -9) == ".so.rules") {
$slib = substr($enabled_item, 6, -6);
- if (file_exists("{$snort_dirs['dynamicrules']}/{$slib}"))
- $dynamic_rules_sections .= "dynamicdetection file {$snort_dirs['dynamicrules']}/{$slib}\n";
- }
- if (file_exists("{$snortcfgdir}/rules/{$enabled_item}"))
+ if (file_exists("{$snort_dirs['dynamicrules']}/{$slib}") &&
+ file_exists("{$snortcfgdir}/rules/{$enabled_item}"))
+ $selected_rules_sections .= "include \$RULE_PATH/{$enabled_item}\n";
+ } else if (file_exists("{$snortcfgdir}/rules/{$enabled_item}"))
$selected_rules_sections .= "include \$RULE_PATH/{$enabled_item}\n";
}
}
@@ -1332,7 +1332,7 @@ config event_queue: max_queue 8 log 3 order_events content_length
#Configure dynamic loaded libraries
dynamicpreprocessor directory {$snort_dirs['dynamicpreprocessor']}
dynamicengine directory {$snort_dirs['dynamicengine']}
-{$dynamic_rules_sections}
+dynamicdetection directory {$snort_dirs['dynamicrules']}
# Flow and stream #
preprocessor frag3_global: max_frags 8192