dreadl0ck / netcap

A framework for secure and scalable network traffic analysis - https://netcap.io

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Netlabel doesn't work on Security Onion (Linux)

Reg1nleifr opened this issue · comments

Hey Phil,
I've been cross compiling your project for the latest Security Onion version (16.04.5.6).
Netcap seems to work fine, however netlabel doesn't work at all. So far I haven't had time to investigate any further however I thought I'd let you know. Hopefully I'll be back with some useful information soon.

Thanks for your awesome project & BR
Reg1n

commented

Hi there,

thanks for reporting!

Please share some output and the commands you executed for reproducing the issue.

Note that netlabel calls suricata to obtain label information,
and currently the path for the configuration file is hardcoded:

https://github.com/dreadl0ck/netcap/blob/master/label/suricata.go#L104

Probably suricata wasn't installed or the configuration file was not at the specified path.

Cheers

commented

Closed due to age. Contact me by mail to reopen.