Home page logo

snort logo Snort mailing list archives

Re: Snort Now Available
From: James Kaufman <jmk () kaufman eden-prairie mn us>
Date: Tue, 28 Dec 2010 19:15:14 -0600

On 12/28/2010 10:18 AM, vincent () cojot name wrote:

Hi Joel,

I don't want to discuss the merits of enabling ipv6 vs. not enabling it
here but since you're jumping on this thread, Joel, could you please help
me with the following issue:
- If I compile snort with --enable-ipv6, will it break everyone's config
files? ('var' nets need to be replaced by 'ipvar' nets unless there's a
backward compatibility feature I don't know of).
- Are there any issues I should be aware of?

I don't mind building my el5 rpms with --enable-ipv6 but if I let them
out in the wild, I would like to avoid making people mad at me for
breaking their configs.. :) Esp. since sourcefire's default spec file did
not enable ipv6 by default...

Thanks for the help,



I think the issue here is that the documentation says to use 'ipvar', 
rather than 'var'. Yet ipvar is invalid in the snort.conf if you don't 
enable ipv6.

That just seems wrong somehow. Why is the parser for ipv4 installations 
unable to understand the ipvar token?


Learn how Oracle Real Application Clusters (RAC) One Node allows customers
to consolidate database storage, standardize their database environment, and, 
should the need arise, upgrade to a full multi-node Oracle RAC database 
without downtime or disruption
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
Snort-users list archive:

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]