For anyone still using this guide, if the snort -W command won't show interfaces there is a fix: in the snort\bin folder either rename or put .old at the end of both wpcap.dll and Packet.dll . Once you have done that, uninstall npcap and then reinstall it, with the wireless option selected and the compatibility mode selected. The snort -W command should show the interfaces after that.
@jakkulatarun1161 Жыл бұрын
Thanks, Benjamin. It worked!
@testsd2 жыл бұрын
Really helpful video series! Thanks so much Miguel! snort -i 1 -c c:\Snort\etc\snort.conf -T snort -i 1 -c c:\Snort\etc\snort.conf -A console IMPORTANT -> (where 1: the number of interface you want eg 1, 2 etc IMPORTANT TO type the correct interface number or you won't have any messages shown when opening tabs and you'll get stuck with "Commencing packet processing". Find the correct interface with ipconfig /all ) alert icmp any any -> any any (msg:"Testing ICMP"; sid:1000001;) alert tcp any any -> any any (msg:"Testing TCP"; sid:1000002;) alert udp any any -> any any (msg:"Testing UDP"; sid:1000003;) Also, it might be best that while installing Npcap you DON'T tick "restrict Npcap driver's access to Administrators only" so you don't get the "registry key" message.
@edithflores7025 Жыл бұрын
I am still getting the same error message for whitelist Can you help?
@simranlahrani Жыл бұрын
Which interface to use when plz help
@Native7225 ай бұрын
I still have the Commencing packet processing, how do I know which interface number is my connection? I have so many due to virtual machine.
@ioannamaria4 ай бұрын
@@Native722 Well, I don't remember what I did then, but I think I tried all of them. I've written something about this command ipconfig /all.
@hanetrr4 жыл бұрын
My man, i just had to suscribe because you saved my ass. I struggled ALL day trying to install this. And you helped me not only installing it but also testing it. THANK YOU
@scottspa742 жыл бұрын
Every one of these 3 tutorials is excellent! Great job, Miguel, and thank you.
@alphaboss35332 жыл бұрын
Thank you so much, loved the step by step, since I have absolutely no clue how to do this. Appreciate the no skipping of parts. Great job ;)
@pauldessoy53694 жыл бұрын
Hey Miguel. Thanks a lot for these videos - saved me a load of time when I could not get snort working. Nice job!
@inhaledchaos18222 жыл бұрын
This whole series was SUPER helpful. Thank you!
@RealShinpin Жыл бұрын
I wish you would make more tutorials. I genuinely enjoyed your tutorials haha.
@tyfawkes2 жыл бұрын
Nice, you helped me get through a couple errors. finally got it to successfully validate. 👍
@darkbluepotato2600 Жыл бұрын
Thank you so much 🙏🙏 Your guide was very well explained !
@topleads97484 жыл бұрын
Mr Miguel Ortega thank you a lot finally have my IDS working, again save my day!
@Native7225 ай бұрын
Mines is still stuck on Commencing packet processing
@samuelteshome67714 жыл бұрын
Thanks so much, Miguel you saved my behind!!! Had to subscribe as well!!
@spiritumsantorini4 жыл бұрын
It worked! Finally. Thank you so much!
@KeithMoon_nz2 жыл бұрын
thanks for this video set, this got me going! really appreciate it.
@orionpeterfernandes88322 жыл бұрын
So well explained, kudos to you !
@dhruvinshah13504 жыл бұрын
really informative video.helped me a lot. Subscribing for more videos like these.
@khushigelda53973 жыл бұрын
ERROR: Invalid device number: 1. Fatal Error, Quitting.. Could not create the registry key. i dont get any interface when using snort -W . can anyone help?
@fader36804 жыл бұрын
if u get fatal error with the code. Delete (uninstall npcap and download the winpcap again) then it will work for u.
@shahdaalabri9932 жыл бұрын
I have error "c:\snort\etc\c:\snort ules\blacklist.rules(0) unable to open rules files" c:\snort\etc\c:\snort ules\blacklist.rules " invalid argument. I checked rules files if there blacklist.rules it's there Please help me quickly 🙏 😢
@abdulqaribstanikzai51802 жыл бұрын
Well done,, thanks for the great video
@mitohattori49373 жыл бұрын
thank you so much, your video helped me a lot
@darphaprothon202 жыл бұрын
i loved the backsplash
@samuelteshome67714 жыл бұрын
Can someone help me understand why my interfaces aren't popping up please
@rachelmatthew67714 жыл бұрын
same I am having issues. Did u fix the issue?
@harini73934 жыл бұрын
the video is GREAT!!!!!!!!!!!! It is simple and easy.
@HalonXPR3 жыл бұрын
You're a life saver Miguel! (^.^)
@edithflores7025 Жыл бұрын
I cannot get past the whitelist error even though it is in rules folder, assistance anyone?
@Brp7203 жыл бұрын
Thank you so much for this!
@nurulaida24494 жыл бұрын
I had follw all the step but my whitelist still not detect? My version of snort is 2.9.16.1. Could u help, cause i dont find a yt that show for my version.
@oscarjulianmartinezalape12024 жыл бұрын
mi es snort se quedo en este paso Commencing packet processing (pid=704) me puedes ayudar por que razon no me culmino, los paquetes. mucgas gracias
@andyitpro18804 жыл бұрын
★★★★★ I can't help...fallin...with you. Best Solution. Thanks
@Glxyx3 жыл бұрын
11:39 it's not working with me, I have a project on Sunday I hope u can help me):
@Russsog3 жыл бұрын
im stuck in the comencing packet processing
@jojodojo26463 жыл бұрын
"snort -i 1 -c c:\Snort\etc\snort.conf -A console" :here try replacing 1 with whatever interface number you got while running snort -W
@Russsog3 жыл бұрын
@@jojodojo2646 what can i put in console that can fix it?
@jojodojo26463 жыл бұрын
@@Russsog try snort -i 2 c c:\Snort\etc\snort.conf -A console instead of 1 in snort -i 1 -c c:\Snort\etc\snort.conf -A console
@jojodojo26463 жыл бұрын
you can try with 2/3/4/5 whatever interface number it is showing when you run snort -W
@Russsog3 жыл бұрын
@@jojodojo2646 a ok thank u so much bro
@muhammadahsan29943 жыл бұрын
sir i face some error like VCruntime140.dll was not found. how i moveon and correct this error kindly tell me
@briliantosuprapto29123 жыл бұрын
ERROR: c:\Snort\etc\snort.conf(253) Could not stat dynamic module path "/usr/local/lib/snort_dynamicrules": No such file or directory. Fatal Error, Quitting.. Could not create the registry key. PLEASE HELPP
@over9thinker3 жыл бұрын
You have to put # this should be like this: # dynamicdetection directory /usr/local/lib/snort_dynamicrules
@johneazy13 жыл бұрын
Unable to open address file c:\Snort\etc\c:snort ules\blacklist.rules, Error: Invalid argument Fatal Error, Quitting...... Please help
@nirmalvp4124 жыл бұрын
can somebody help me to solve this error? pcap DAQ configured to passive. The DAQ version does not support reload. Acquiring network traffic from "\Device\NPF_{D2A171BC-7226-4BB3-990E-62492E2D611E}". Decoding Ethernet ERROR: log_tcpdump: Failed to open log file "log/snort.log.1604341082": No such file or directory Fatal Error, Quitting..
@topleads97484 жыл бұрын
en check for the snort log file as the error is pointing to a deleted log file
@yasinalperbingul74203 жыл бұрын
Have you solved your problem? I conuter the same problem too.
@ahmadkemrisyahputramunthe16122 жыл бұрын
@@topleads9748 where should i check the snort log file brother?
@ahmadkemrisyahputramunthe16122 жыл бұрын
@@yasinalperbingul7420 have you got the point of the problem bro?
@phamuc77852 жыл бұрын
ERROR: c:\Snort\etc\snort.conf(0)Unable to open rules file": Invalid argument. Fatal Error, Quitting.. Could not create the registry key. Please help me
@RealShinpin Жыл бұрын
Same issue, Trying to figure it out
@phuongnguyen91854 жыл бұрын
verry good. Thank you very much
@jamesbond-cx2uh4 жыл бұрын
Stuck at commencing packet processing. Anyone has any idea how to solve this problem?
@jojodojo26463 жыл бұрын
"snort -i 1 -c c:\Snort\etc\snort.conf -A console" :here try replacing 1 with whatever interface number you got while running snort -W
@darphaprothon202 жыл бұрын
im stuck here $Commencing packet processing (pid=15812)
@darphaprothon202 жыл бұрын
i tried restart but im still stuck here 11:17 i cant see this 11:27
@darphaprothon202 жыл бұрын
found fix snort -W search for your network then run command snort with your interface number it will work fine
@afnanal-nabhani8923 жыл бұрын
Thank you a lot.
@AbdelaliBennadji2 жыл бұрын
Thanks Miguelle
@hahahihi40824 жыл бұрын
Thanks
@htpoh65o5mh5yo53 жыл бұрын
priceless
@rryunarumi3 жыл бұрын
pbe nya lok
@faizsuhaimi133 жыл бұрын
hello anyone...or the creator...i'm having an error at the end of the video like this +++++++++++++++++++++++++++++++++++++++++++++++++++ Initializing rule chains... ERROR: c:\Snort ules\local.rules(21) No argument passed to keyword "sid". Make sure you didn't forget a ':' or the argument to this keyword. Fatal Error, Quitting.. idk whats wrong with it.
@keshavgoyal31063 жыл бұрын
ERROR: log_tcpdump: Failed to open log file "log/snort.log.1621172629": No such file or directory Fatal Error, Quitting.. how to resolve this
@Silverops4463 жыл бұрын
I have the same error, has this been resolved?
@ahmadkemrisyahputramunthe16122 жыл бұрын
@@Silverops446 have you found the point of the problem bro?
You probably have a newer version of Snort. Ignore command she said...navigate to CD C:\snort\bin should see C:\Snort\bin> Snort Hit enter It will start running
@rachelmatthew67714 жыл бұрын
Hey i am not able to see any interfaces? I followed all the steps. Anyone has any solutions?
@jojodojo26463 жыл бұрын
it is because I think you made some mistake while installing from step1 in the video . I also was not able to view interface giving snort -W but later on after uninstalling and installing fresh it works from step 1