[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oisf-users
Subject:    Re: [Oisf-users] suricata and 224.0.0.252
From:       Victor Julien <lists () inliniac ! net>
Date:       2013-03-25 18:37:05
Message-ID: 51509951.20709 () inliniac ! net
[Download RAW message or body]

On 03/25/2013 07:35 PM, paul wrote:
> Hi,
> 
> 
> 
> New to this list, so I hope you can help out.
> 
> 
> 
> Suricata reports a prio 1 on my internal network, multicast from a
> single station to 224.0.0.252. According to suricata, this is emule
> traffic. According to google, this is link local multicast name resolution.
> 
> 
> 
> It is a windows 7 pc (the only one on that network), suricata is version
> 1.1.1 (ubuntu 12.04lts)

Please update to a recent version, 1.1.1 is ancient and not supported by us.

You can use our PPA for Ubuntu:
https://redmine.openinfosecfoundation.org/projects/suricata/wiki/Ubuntu_Installation_-_Personal_Package_Archives_%28PPA%29


Cheers,
Victor

-- 
---------------------------------------------
Victor Julien
http://www.inliniac.net/
PGP: http://www.inliniac.net/victorjulien.asc
---------------------------------------------

_______________________________________________
Suricata IDS Users mailing list: oisf-users@openinfosecfoundation.org
Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
OISF: http://www.openinfosecfoundation.org/


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic