Project

General

Profile

Actions

Bug #6968

closed

Snort VRT Rules Fail to automatically update SSL read error

Added by rub man over 7 years ago. Updated about 7 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
Snort
Target version:
-
Start date:
11/28/2016
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Affected Version:
Affected Plus Version:
Affected Architecture:

Description

pfsense version: 2.3.2-RELEASE-p1 (amd64)
Snort Version: 3.2.9.1_14

Automatic update fails with following errors:

Nov 28 02:10:10     php         /usr/local/pkg/snort/snort_check_for_rule_updates.php: [Snort] Rules download error: SSL read: error:00000000:lib(0):func(0):reason(0), errno 54
Nov 28 00:05:03     php         /usr/local/pkg/snort/snort_check_for_rule_updates.php: [Snort] There is a new set of Snort VRT rules posted. Downloading snortrules-snapshot-2983.tar.gz... 

The manual update just hangs after identifying that there is a new version available for hours.

Actions #1

Updated by Kill Bill over 7 years ago

You have pfBNG installed and Amazon S3 blocked?

Actions #2

Updated by rub man over 7 years ago

Kill Bill wrote:

You have pfBNG installed and Amazon S3 blocked?

Nope only package I have installed is snort.
I don't do any egress filtering for anything (including s3)
edit: just noticed that it failed with error 403 after it retried to download after ssl read error

snort_check_for_rule_updates.php: [Snort] Snort VRT rules file download failed... server returned error '403'... 

and just noticed couple hours ago it automatically checked and downloaded the file successfully after trying and getting error for days.

Actions #3

Updated by Kill Bill over 7 years ago

Well, apparently not a package bug.

Actions #4

Updated by Kill Bill about 7 years ago

Upstream server issue, has nothing to do with pfSense. Close please.

Actions #5

Updated by Jim Pingle about 7 years ago

  • Status changed from New to Rejected
Actions

Also available in: Atom PDF