openfpc-users Mailing List for openfpc (Page 3)
Open Source Full Packet Capture
Brought to you by:
leonward
You can subscribe to this list here.
2015 |
Jan
|
Feb
|
Mar
|
Apr
|
May
(6) |
Jun
|
Jul
|
Aug
(18) |
Sep
(17) |
Oct
(1) |
Nov
(10) |
Dec
(2) |
---|
From: Leon W. <le...@rm...> - 2015-05-21 10:36:02
|
Hi, Your 1st problem is interesting. I can see why you're getting the error, but I'm not sure why it's working for me as both with and without %. Hrmmm Perl weirdness. What version of Perl are you using and what linux distro? The 2nd problem(s) are different. You don't have cxtracker installed, and doens't look like you have the openfpc user. How did you perform install? I assume using openfpc-install? At startup OpenFPC drops root permissions for security reasons. "Starting Daemonlogger (DC1_fw)... unable to map openfpc to a uid, ownership not changed: at /usr/bin/openfpc line 577" This makes me think that you've not got a user called openfpc. This should have been made as part of the install, does the user exist? "Starting OpenFPC Queue Daemon (DC1_fw)... Could not find uid and gid user openfpc at /usr/bin/openfpc-queued line 126" Same as above. Was there any errors when running openfpc-install.sh install? "[!] cxtracker not found on this system. Can't start it" You need to install cxtracker to use the connection tracking/searching capabilities. You'll find a .deb for amd64 in the repo to save you compiling your own. At some point I'm going to set up an Ubuntu PPA so it can all be apt-get installed, but real life keeps getting in the way. -L On Wed, May 20, 2015 at 3:59 AM, Le CON <mat...@ho...> wrote: > Before you write back, > > I have sorted out that initial issue, typo for 'for each my $file (keys > $c) {' - I put an '%' in front of "$c" to make > > for each my $file (keys %$c) { > > and it seemed to work. > > > > but now I have some other issues, looks like permissions but it has > managed to create a 'failed' directory in the buffer/data dir. > > is it ok to have the buffer/data dir the same as the session dir? > > > > > > > > $ sudo openfpc -a start > > Starting Daemonlogger (DC1_fw)... > unable to map openfpc to a uid, ownership not changed: at /usr/bin/openfpc > line 577 > unable to map openfpc to a gid, group ownership not changed: at > /usr/bin/openfpc line 577 > unable to map openfpc to a uid, ownership not changed: at > /usr/bin/openfpc line 595 > unable to map openfpc to a gid, group ownership not changed: at > /usr/bin/openfpc line 595 > Done > Starting OpenFPC Queue Daemon (DC1_fw)... > Could not find uid and gid user openfpc at /usr/bin/openfpc-queued line 126 > Failed > - Check syslog for details > Starting OpenFPC cxtracker (DC1_fw)... > Failed > [!] cxtracker not found on this system. Can't start it > Starting OpenFPC Connection Uploader (DC1_fw) ... > Done > > > ------------------------------ > From: mat...@ho... > To: le...@rm... > Subject: RE: OpenFPC GUI > Date: Wed, 20 May 2015 13:06:27 +1200 > > > Hey Leon, > > hope you had a good holidays, havent talked to you in a while but im back > about to release a prod box and I want OFPC on it for possible action. > > running into a problem here with your latest gitclone - > > $ ./openfpc -a status > Type of arg 1 to keys must be hash (not private variable) at ./openfpc > line 80, near "$c) " > Execution of ./openfpc aborted due to compilation errors. > > > inspecting the /usr/bin/openfpc file around line 80 - > > > > for each my $file (keys $c) { > my $bad=0; > if ($c->{$file}{NODENAME} =~ /[-\?\\\/\.;]/ ) { > my $err="Invalid characters found in NODENAME > \"$c->{$f$ > push(@errs, $err); > $bad=1; > } > > if ($c->{$file}{'OFPC_ENABLED'} =~ /[yY1]/ ) { > if ( grep (/$c->{$file}{'OFPC_PORT'}/, @ports)) > { > #if ( $c->{$file}{'OFPC_PORT'} ~~ > @ports) { > my $err="OFPC Port > $c->{$file}{'OFPC_PORT'} alr$ > push(@errs, $err); > $bad=1; > } > > > > > .... any help ? :-) > > > ------------------------------ > From: mat...@ho... > To: le...@rm... > Subject: RE: OpenFPC GUI > Date: Tue, 3 Feb 2015 15:57:35 +1300 > > also the attached files are in /tmp/ along with the pcaps under arbitrary > charstrg folder names which should be passed to > '/var/tmp/openfpc/extracted' or to where specified by '-w' > > directory listing of '/tmp' below > > ./yrS6Iyy3VA > ./yrS6Iyy3VA/AB51CD9A-AB4F-11E4-BC85-ABA9F27951B6.pcap-1422930496.pcap > ./yrS6Iyy3VA/AB51CD9A-AB4F-11E4-BC85-ABA9F27951B6.pcap-1422927447.pcap > ./LVarjPtZeD > > ./LVarjPtZeD/1422931871-82A48734-AB4F-11E4-8C8C-C2F0232310D0.pcap-1422930496.pcap > > ./LVarjPtZeD/1422931871-82A48734-AB4F-11E4-8C8C-C2F0232310D0.pcap-1422927447.pcap > ./tZD9uK6zBQ > > ./tZD9uK6zBQ/1422931856-79E21E04-AB4F-11E4-BF16-AAB72E8C5B43.pcap-1422930496.pcap > > ./tZD9uK6zBQ/1422931856-79E21E04-AB4F-11E4-BF16-AAB72E8C5B43.pcap-1422927447.pcap > ./Fsm6jpXfZ1 > ./Fsm6jpXfZ1/70CF2DAC-AB4F-11E4-AB1B-927F580AA963.pcap-1422930496.pcap > ./Fsm6jpXfZ1/70CF2DAC-AB4F-11E4-AB1B-927F580AA963.pcap-1422927447.pcap > ./yd7MXT3N1C > ./yd7MXT3N1C/620FCBD2-AB4F-11E4-9D95-B9F6FDE379F2.pcap-1422930496.pcap > ./yd7MXT3N1C/620FCBD2-AB4F-11E4-9D95-B9F6FDE379F2.pcap-1422927447.pcap > ./vWCfzuHlAT > ./vWCfzuHlAT/25C97BF2-AB4D-11E4-831B-E90AE8CCE601.pcap-1422927447.pcap > ./vWCfzuHlAT/25C97BF2-AB4D-11E4-831B-E90AE8CCE601.pcap-1422930496.pcap > ./zIf6QdvWMD > ./zIf6QdvWMD/20A9BCB8-AB4D-11E4-BB8F-BC6F0D6DDDF9.pcap-1422927447.pcap > ./zIf6QdvWMD/20A9BCB8-AB4D-11E4-BB8F-BC6F0D6DDDF9.pcap-1422930496.pcap > ./9rXWKGy7k8 > > ./9rXWKGy7k8/1422930542-6AB765D6-AB4C-11E4-8DD8-FCDB2C1C0BFB.pcap-1422927447.pcap > > ./9rXWKGy7k8/1422930542-6AB765D6-AB4C-11E4-8DD8-FCDB2C1C0BFB.pcap-1422930496.pcap > ./yJPlb8V5ck > ./yJPlb8V5ck/64C17CC0-AB4C-11E4-96E2-F65304730EEE.pcap-1422927447.pcap > ./yJPlb8V5ck/64C17CC0-AB4C-11E4-96E2-F65304730EEE.pcap-1422930496.pcap > ./GnZBweu_98 > > ./GnZBweu_98/1422929046-EF330512-AB48-11E4-8C90-B00FB10C42E7.pcap-1422921283.pcap > > ./GnZBweu_98/1422929046-EF330512-AB48-11E4-8C90-B00FB10C42E7.pcap-1422927447.pcap > ./axVvFb9BGi > ./axVvFb9BGi/E49D4A36-AB48-11E4-BF6A-CFCF0FC3CBD4.pcap-1422921283.pcap > ./axVvFb9BGi/E49D4A36-AB48-11E4-BF6A-CFCF0FC3CBD4.pcap-1422927447.pcap > ./0nUUI4fSL9 > > ./0nUUI4fSL9/1422928573-D5281E10-AB47-11E4-BD4E-D91F209C3CB7.pcap-1422921283.pcap > > ./0nUUI4fSL9/1422928573-D5281E10-AB47-11E4-BD4E-D91F209C3CB7.pcap-1422927447.pcap > ./7tobw5Q5AF > ./7tobw5Q5AF/CBBF3EEE-AB47-11E4-86CD-ADAAB097DFA2.pcap-1422921283.pcap > ./7tobw5Q5AF/CBBF3EEE-AB47-11E4-86CD-ADAAB097DFA2.pcap-1422927447.pcap > ./V7eE9tudIL > ./V7eE9tudIL/8DA5FC66-AB46-11E4-9277-CC6BA90FB7B0.pcap-1422921283.pcap > ./V7eE9tudIL/8DA5FC66-AB46-11E4-9277-CC6BA90FB7B0.pcap-1422927447.pcap > ./mWHjnLKQiU > > ./mWHjnLKQiU/1422927926-5397C37E-AB46-11E4-AEB6-9917720B0A8C.pcap-1422921283.pcap > > ./mWHjnLKQiU/1422927926-5397C37E-AB46-11E4-AEB6-9917720B0A8C.pcap-1422927447.pcap > ./LNLXfNtoyp > > ./LNLXfNtoyp/1422927906-479E6F0A-AB46-11E4-A9EF-82998480152D.pcap-1422921283.pcap > > ./LNLXfNtoyp/1422927906-479E6F0A-AB46-11E4-A9EF-82998480152D.pcap-1422927447.pcap > ./systemd-mysqld.service-XIzh6fa > find: ‘./systemd-mysqld.service-XIzh6fa’: Permission denied > ./.UUID_STATE > ./.UUID_NODEID > ./cxtracker.start.log > ./openfpc-untitled.log > ./systemd-cups.service-X2TaKgN > find: ‘./systemd-cups.service-X2TaKgN’: Permission denied > ./.esd-1000 > ./.esd-1000/socket > ./systemd-colord.service-XzrLIJU > find: ‘./systemd-colord.service-XzrLIJU’: Permission denied > ./hogsuspend > ./.X0-lock > ./systemd-rtkit-daemon.service-XIrHD2J > find: ‘./systemd-rtkit-daemon.service-XIrHD2J’: Permission denied > ./.Test-unix > ./.font-unix > ./.XIM-unix > ./.ICE-unix > ./.ICE-unix/1471 > ./.ICE-unix/1040 > ./.X11-unix > ./.X11-unix/X0 > > > > > ------------------------------ > From: mat...@ho... > To: le...@rm... > Subject: RE: OpenFPC GUI > Date: Tue, 3 Feb 2015 15:30:34 +1300 > > Hey Leon hope you had a good break :-) > > so im back running into the same problem - can search fine but cant > 'fetch' or 'store' the pcaps. > > 'fetch' gives - > OFPC Request Failed: 0 > > > > 'store' gives > > ##################################### > Queue Position: 0 > Remote File : E49D4A36-AB48-11E4-BF6A-CFCF0FC3CBD4.pcap > Result : In Queue > > > > > interestingly when running a search, the pcaps seem to be being extracted > to some extent, but dont make it to the specififed > /var/tmp/openfpc/extracted folder. > > > >> > > sudo find / -iname "*.pcap" > > /tmp/0nUUI4fSL9/1422928573-D5281E10-AB47-11E4-BD4E-D91F209C3CB7.pcap-1422921283.pcap > > /tmp/0nUUI4fSL9/1422928573-D5281E10-AB47-11E4-BD4E-D91F209C3CB7.pcap-1422927447.pcap > /tmp/7tobw5Q5AF/CBBF3EEE-AB47-11E4-86CD-ADAAB097DFA2.pcap-1422921283.pcap > /tmp/7tobw5Q5AF/CBBF3EEE-AB47-11E4-86CD-ADAAB097DFA2.pcap-1422927447.pcap > /tmp/V7eE9tudIL/8DA5FC66-AB46-11E4-9277-CC6BA90FB7B0.pcap-1422921283.pcap > /tmp/V7eE9tudIL/8DA5FC66-AB46-11E4-9277-CC6BA90FB7B0.pcap-1422927447.pcap > > /tmp/mWHjnLKQiU/1422927926-5397C37E-AB46-11E4-AEB6-9917720B0A8C.pcap-1422921283.pcap > > /tmp/mWHjnLKQiU/1422927926-5397C37E-AB46-11E4-AEB6-9917720B0A8C.pcap-1422927447.pcap > > /tmp/LNLXfNtoyp/1422927906-479E6F0A-AB46-11E4-A9EF-82998480152D.pcap-1422921283.pcap > > /tmp/LNLXfNtoyp/1422927906-479E6F0A-AB46-11E4-A9EF-82998480152D.pcap-1422927447.pcap > > > if run debug it looks fine > > the only thing in the /var/tmp/openfpc/extracted folder is '0.txt' > > looks like the pcaps are writing properly to the pcaps folder but when > attempting to store or fetch its getting stuck?? > |
From: Leigh H. <ha...@do...> - 2015-05-05 13:45:04
|
G'day Leon, Thanks for the quick reply! I'll check it out and see what I can do. Cheers, Leigh On Tue, May 5, 2015 at 2:43 PM, Leon Ward <le...@rm...> wrote: > Hi, > > Not today. Authentication is all handled internally, but it's not > something that couldn't be added if required. > I don't have any plans to add it myself though. Patches would be > welcome... :) > > -L > > On Tue, May 5, 2015 at 1:40 PM, Leigh Hart <ha...@do...> wrote: > >> >> G'day, >> >> I stumbled across OpenFPC this morning and it looks like a great >> project. I am interested to find out if there are any external >> authentication options available? E.g.: PAM, LDAP, AD integration? >> >> Cheers, >> >> Leigh >> >> >> ------------------------------------------------------------------------------ >> One dashboard for servers and applications across Physical-Virtual-Cloud >> Widest out-of-the-box monitoring support with 50+ applications >> Performance metrics, stats and reports that give you Actionable Insights >> Deep dive visibility with transaction tracing using APM Insight. >> http://ad.doubleclick.net/ddm/clk/290420510;117567292;y >> _______________________________________________ >> Openfpc-users mailing list >> Ope...@li... >> https://lists.sourceforge.net/lists/listinfo/openfpc-users >> >> > |
From: Leon W. <le...@rm...> - 2015-05-05 13:43:18
|
Hi, Not today. Authentication is all handled internally, but it's not something that couldn't be added if required. I don't have any plans to add it myself though. Patches would be welcome... :) -L On Tue, May 5, 2015 at 1:40 PM, Leigh Hart <ha...@do...> wrote: > > G'day, > > I stumbled across OpenFPC this morning and it looks like a great project. > I am interested to find out if there are any external authentication > options available? E.g.: PAM, LDAP, AD integration? > > Cheers, > > Leigh > > > ------------------------------------------------------------------------------ > One dashboard for servers and applications across Physical-Virtual-Cloud > Widest out-of-the-box monitoring support with 50+ applications > Performance metrics, stats and reports that give you Actionable Insights > Deep dive visibility with transaction tracing using APM Insight. > http://ad.doubleclick.net/ddm/clk/290420510;117567292;y > _______________________________________________ > Openfpc-users mailing list > Ope...@li... > https://lists.sourceforge.net/lists/listinfo/openfpc-users > > |
From: Leigh H. <ha...@do...> - 2015-05-05 13:11:56
|
G'day, I stumbled across OpenFPC this morning and it looks like a great project. I am interested to find out if there are any external authentication options available? E.g.: PAM, LDAP, AD integration? Cheers, Leigh |