Are you sure you are not using cvs head or git?

Try grepping for AUTOCAT out of sguild.


On Mon, Jan 13, 2014 at 6:50 PM, Lay, James <james.lay@wincofoods.com> wrote:

It does not…curious:

 

2014-01-13 23:47:32 pid(19949)  Loading access list: /opt/etc/snort/sguild/sguild.access

2014-01-13 23:47:32 pid(19949)  Sensor access list set to ALLOW ANY.

2014-01-13 23:47:32 pid(19949)  Client access list set to ALLOW ANY.

2014-01-13 23:47:32 pid(19949)  Email Configuration:

2014-01-13 23:47:32 pid(19949)    Config file: /etc/sguild/sguild.email

2014-01-13 23:47:32 pid(19949)    Enabled: No

2014-01-13 23:47:32 pid(19949)  Connecting to localhost on 3306 as sguil

2014-01-13 23:47:32 pid(19949)  MySQL Version: version 5.5.34-0.12.04.1

2014-01-13 23:47:32 pid(19949)  SguilDB Version: 0.14

2014-01-13 23:47:32 pid(19949)  Creating event MERGE table.

2014-01-13 23:47:32 pid(19949)  Creating tcphdr MERGE table.

2014-01-13 23:47:32 pid(19949)  Creating udphdr MERGE table.

2014-01-13 23:47:32 pid(19949)  Creating icmphdr MERGE table.

2014-01-13 23:47:32 pid(19949)  Creating data MERGE table.

2014-01-13 23:47:32 pid(19951)  Loaderd Forked

2014-01-13 23:47:32 pid(19952)  Queryd Forked

2014-01-13 23:47:32 pid(19949)  Retrieving DB info...

2014-01-13 23:47:32 pid(19949)    SELECT sid, net_name, hostname, agent_type FROM sensor WHERE active='Y' ORDER BY net_name, sid ASC

2014-01-13 23:47:32 pid(19949)    SELECT MAX(timestamp) FROM event WHERE sid=4

2014-01-13 23:47:32 pid(19949)    SELECT MAX(timestamp) FROM event WHERE sid=3

2014-01-13 23:47:32 pid(19949)    SELECT MAX(timestamp) FROM event WHERE sid=1

2014-01-13 23:47:32 pid(19949)    SELECT MAX(timestamp) FROM event WHERE sid=2

2014-01-13 23:47:32 pid(19949)  Querying DB for archived events...

2014-01-13 23:47:32 pid(19949)  Querying DB for escalated events...

2014-01-13 23:47:32 pid(19949)  Retrieving DB info...

2014-01-13 23:47:32 pid(19949)    Getting a list of tables.

2014-01-13 23:47:32 pid(19949)    ...Getting info on autocat.

2014-01-13 23:47:32 pid(19949)    ...Getting info on data.

2014-01-13 23:47:32 pid(19949)    ...Getting info on event.

2014-01-13 23:47:32 pid(19949)    ...Getting info on filters.

2014-01-13 23:47:32 pid(19949)    ...Getting info on history.

2014-01-13 23:47:32 pid(19949)    ...Getting info on icmphdr.

2014-01-13 23:47:32 pid(19949)    ...Getting info on ip2c.

2014-01-13 23:47:32 pid(19949)    ...Getting info on mappings.

2014-01-13 23:47:32 pid(19949)    ...Getting info on nessus.

2014-01-13 23:47:32 pid(19949)    ...Getting info on nessus_data.

2014-01-13 23:47:32 pid(19949)    ...Getting info on pads.

2014-01-13 23:47:32 pid(19949)    ...Getting info on portscan.

2014-01-13 23:47:32 pid(19949)    ...Getting info on sensor.

2014-01-13 23:47:32 pid(19949)    ...Getting info on status.

2014-01-13 23:47:32 pid(19949)    ...Getting info on tcphdr.

2014-01-13 23:47:32 pid(19949)    ...Getting info on udphdr.

2014-01-13 23:47:32 pid(19949)    ...Getting info on user_info.

2014-01-13 23:47:32 pid(19949)    ...Getting info on version.

2014-01-13 23:47:32 pid(19949)  Sguild Initialized.

 

Thanks Bamm.

 

James


--
sguil - The Analyst Console for NSM
http://sguil.sf.net