Package: fwsnort
Version: 1.6.5-1
Severity: grave
Justification: renders package unusable
Dear Maintainer,
* What led up to the situation?
* What exactly did you do (or not do) that was effective (or
ineffective)?
* What was the outcome of this action?
* What outcome did you expect instead?
What I did:
- Update the snort rules: sudo fwsnort --update-rules
- Run fwsnort: sudo fwsnort
- instantiate the fwsnort policy: sudo /var/lib/fwsnort/fwsnort.sh
The result:
[+] Splicing fwsnort 11647 rules into the iptables policy...
iptables-restore v1.6.0: invalid port/service `[6789]' specified
Error occurred at line: 11464
Try `iptables-restore -h' or 'iptables-restore --help' for more information.
The "BUG?" seem to be present in debian 8 & 9:
https://superuser.com/questions/1189290/fwsnort-wont-apply-rules-in-iptables
-- System Information:
Debian Release: 9.0
APT prefers testing
APT policy: (500, 'testing')
Architecture: amd64 (x86_64)
Kernel: Linux 4.9.0-2-amd64 (SMP w/8 CPU cores)
Locale: LANG=en_CA.UTF-8, LC_CTYPE=en_CA.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
Versions of packages fwsnort depends on:
ii debconf [debconf-2.0] 1.5.60
ii iptables 1.6.0+snapshot20161117-5
ii libiptables-parse-perl 1.6-1
ii libnet-rawip-perl 0.25-2+b3
ii libnetaddr-ip-perl 4.079+dfsg-1+b1
ii perl 5.24.1-2
Versions of packages fwsnort recommends:
ii snort-rules-default 2.9.7.0-5
fwsnort suggests no packages.
-- debconf information:
fwsnort/download: false