Accepted snort 2.9.2.2-3 (source i386 all)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Tue, 07 Aug 2012 23:53:24 +0200
Source: snort
Binary: snort snort-common snort-doc snort-mysql snort-pgsql snort-rules-default snort-common-libraries
Architecture: source i386 all
Version: 2.9.2.2-3
Distribution: unstable
Urgency: medium
Maintainer: Javier Fernández-Sanguino Peña <jfs@debian.org>
Changed-By: Javier Fernández-Sanguino Peña <jfs@debian.org>
Description:
snort - flexible Network Intrusion Detection System
snort-common - flexible Network Intrusion Detection System [common files]
snort-common-libraries - flexible Network Intrusion Detection System ruleset
snort-doc - Documentation for the Snort IDS [documentation]
snort-mysql - flexible Network Intrusion Detection System [MySQL]
snort-pgsql - flexible Network Intrusion Detection System [PostgreSQL]
snort-rules-default - flexible Network Intrusion Detection System ruleset
Closes: 626596 677810 680303
Changes:
snort (2.9.2.2-3) unstable; urgency=medium
.
[ Upload target towards Wheezy fixing some important bugs
and substantially improving the information provided on the
packages to clarify user expectations ]
* Acknowledge previous NMU
* debian/patches/config: Update the patch to:
- use absolute paths instead of relative paths to point to
the white list and black list used by the reputation
pre-processor.
- disable the reputation as we do not ship any white/black lists
by default (which causes it to fail at startup) and also
because this preprocessor is experimental.
.
Both changes fix the bug that prevented the package from being
configured due to errors when starting up Snort with the
default configuration (Closes: #677810)
.
- Add a comment to /etc/snort/snort.conf documenting for users
reading the file that preinstalled rules are surely out of date.
.
* debian/patches/config_disabled_rules: Comment out shellcode rules as these
have a huge impact in performance unless properly tuned.
* debian/patches/rules: Fix the definition of many SIP rules (defined
as 'alert ip any any'. These were generating a lot of false positives
in environment were enabled. Regardless of the change comment out SIP
rules since they are outdate can generate many false alarms unless
properly defined. (Closes: #626596, #680303).
* debian/control: Adjust description of snort-rules-default to indicate
users that the ruleset provided should not be considered up-to-date.
Encourage users to obtain additional/upgraded rules elsewhere.
* debian/snort-rules-default.README.Debian: Include more information to
potential users on the issues related to the default ruleset provided
(and why it is out of date) as well as pointers as to where obtain
additional rulesets. Some of this information is also in the NEWS file
but is easy to miss to new users.
Checksums-Sha1:
bf040db7eb892231242742dfb65f862661303174 1775 snort_2.9.2.2-3.dsc
77178e80091fa45d33146d06601ae5cedb5186c9 1591288 snort_2.9.2.2-3.debian.tar.gz
6b4f7dfdf2643f1014b112a35055e2f6fb57382c 860640 snort_2.9.2.2-3_i386.deb
9eaa68595155572a65b60ed89c91761b5a3a6870 873774 snort-mysql_2.9.2.2-3_i386.deb
b61176d0ded524aa096706b11fec08680d88cd15 873410 snort-pgsql_2.9.2.2-3_i386.deb
d5badc5e7414013f05052abe6892cb5a774877c9 532786 snort-common-libraries_2.9.2.2-3_i386.deb
fe88bcbd7bc70cd07ea1dc383e93a7c6b1f04cd7 210010 snort-common_2.9.2.2-3_all.deb
6de0b296a6b2b0271f78e058e838b22aa146ab6d 2655846 snort-doc_2.9.2.2-3_all.deb
0cbf675ba7dd2c799de8c1fab59a1445a10f81fb 343536 snort-rules-default_2.9.2.2-3_all.deb
Checksums-Sha256:
9464c4d13a925a71825ffe617135b9a196e279e2f131f973569348252bd3b040 1775 snort_2.9.2.2-3.dsc
e7e6b44659d09379f7e68b7f965b3eb1d22b75c3da9330f6af510dd8b60b262b 1591288 snort_2.9.2.2-3.debian.tar.gz
f51f7eeda41f2e4769f9fcff47e90c61e1e02eb1b8e629a57e7423b4b6c06cbd 860640 snort_2.9.2.2-3_i386.deb
08e4cfa2a2f37a184b9318d092751e082939e81ac3839f58bb5a6be1f868752b 873774 snort-mysql_2.9.2.2-3_i386.deb
f1cfc842e78edd21c2fdd7b3b94851a710ad8d52b28ce70f842847e4208efad9 873410 snort-pgsql_2.9.2.2-3_i386.deb
f12016c282d18bb379c587019d6358f6bdf5b0c28dafb01868648d95e52fd7f1 532786 snort-common-libraries_2.9.2.2-3_i386.deb
b0d5b598a6369dc385721a2775a6ffcf41f655fe9bcf23d1446347670cbc48ae 210010 snort-common_2.9.2.2-3_all.deb
d45d6f459cc78ef7d1b74deb8612693b9a3329403163d2493b58def556dc2656 2655846 snort-doc_2.9.2.2-3_all.deb
565f8435501648a9bf49bbc5101e0be336d355dc7ff0aab9ca0165cb60e18379 343536 snort-rules-default_2.9.2.2-3_all.deb
Files:
97034dd983dbdb4273410678dde3c4e7 1775 net optional snort_2.9.2.2-3.dsc
80de9a751c67aed5a22183a717838a39 1591288 net optional snort_2.9.2.2-3.debian.tar.gz
981ae3cbee2ddc712063c4d8dd6a9a48 860640 net optional snort_2.9.2.2-3_i386.deb
056eee237750bd30842c4ffa5893c62e 873774 net extra snort-mysql_2.9.2.2-3_i386.deb
40353e56f50e0d4f5082a0807755b5d6 873410 net optional snort-pgsql_2.9.2.2-3_i386.deb
b916d1cea461a1c4187040c5ed285198 532786 net optional snort-common-libraries_2.9.2.2-3_i386.deb
85e958914b86054887eaa8aa6b94e325 210010 net optional snort-common_2.9.2.2-3_all.deb
42a87352168af79ebc38fb733b6ca5eb 2655846 doc optional snort-doc_2.9.2.2-3_all.deb
d3bbb5b45e9f9039c35ebbcb1138a055 343536 net optional snort-rules-default_2.9.2.2-3_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
iD8DBQFQIb4GsandgtyBSwkRAllDAJ9c+WRZ+wtGCKWfBCyl1IFYncFJ+gCfeOn6
s+CiDALAJDPc1yQ/ndJumYY=
=+ncz
-----END PGP SIGNATURE-----