Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. alright.... made a dockerfile for "suricata-indev".

alright.... made a dockerfile for "suricata-indev".

Scheduled Pinned Locked Moved Uncategorized
15 Posts 4 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • da_667@infosec.exchangeD This user is from outside of this forum
    da_667@infosec.exchangeD This user is from outside of this forum
    da_667@infosec.exchange
    wrote last edited by
    #1

    alright.... made a dockerfile for "suricata-indev". Let's see how this goes...

    da_667@infosec.exchangeD 1 Reply Last reply
    0
    • da_667@infosec.exchangeD da_667@infosec.exchange

      alright.... made a dockerfile for "suricata-indev". Let's see how this goes...

      da_667@infosec.exchangeD This user is from outside of this forum
      da_667@infosec.exchangeD This user is from outside of this forum
      da_667@infosec.exchange
      wrote last edited by
      #2

      Canonical DDOS is affecting my dockerfiles for Dalton. They use ubuntu as the base for installing and compiling Suricata containers.

      Looks like I'm pioneering debian:latest containers today.

      Trixie removed libpcre3 from the package list, so that means I have to acuire and compile pcre8.45 from sourceforge in order to compile successfully. Feels grody, but whatever.

      cr0w@infosec.exchangeC huronbikes@cyberplace.socialH 2 Replies Last reply
      0
      • da_667@infosec.exchangeD da_667@infosec.exchange

        Canonical DDOS is affecting my dockerfiles for Dalton. They use ubuntu as the base for installing and compiling Suricata containers.

        Looks like I'm pioneering debian:latest containers today.

        Trixie removed libpcre3 from the package list, so that means I have to acuire and compile pcre8.45 from sourceforge in order to compile successfully. Feels grody, but whatever.

        cr0w@infosec.exchangeC This user is from outside of this forum
        cr0w@infosec.exchangeC This user is from outside of this forum
        cr0w@infosec.exchange
        wrote last edited by
        #3

        @da_667 Sourceforge? Wear gloves.

        astraleureka@social.treehouse.systemsA 1 Reply Last reply
        0
        • da_667@infosec.exchangeD da_667@infosec.exchange

          Canonical DDOS is affecting my dockerfiles for Dalton. They use ubuntu as the base for installing and compiling Suricata containers.

          Looks like I'm pioneering debian:latest containers today.

          Trixie removed libpcre3 from the package list, so that means I have to acuire and compile pcre8.45 from sourceforge in order to compile successfully. Feels grody, but whatever.

          huronbikes@cyberplace.socialH This user is from outside of this forum
          huronbikes@cyberplace.socialH This user is from outside of this forum
          huronbikes@cyberplace.social
          wrote last edited by
          #4

          @da_667 oh jeez, pcre is a build dependency for Suricata?

          da_667@infosec.exchangeD 1 Reply Last reply
          0
          • huronbikes@cyberplace.socialH huronbikes@cyberplace.social

            @da_667 oh jeez, pcre is a build dependency for Suricata?

            da_667@infosec.exchangeD This user is from outside of this forum
            da_667@infosec.exchangeD This user is from outside of this forum
            da_667@infosec.exchange
            wrote last edited by
            #5

            @huronbikes technically no, but it is a dependency for hyperscan, which is a library that improves PCRE performance for Suricata greatly. And also, I think pcre is required for snort 2.9.x, which I am still required to support.

            huronbikes@cyberplace.socialH 1 Reply Last reply
            0
            • da_667@infosec.exchangeD da_667@infosec.exchange

              @huronbikes technically no, but it is a dependency for hyperscan, which is a library that improves PCRE performance for Suricata greatly. And also, I think pcre is required for snort 2.9.x, which I am still required to support.

              huronbikes@cyberplace.socialH This user is from outside of this forum
              huronbikes@cyberplace.socialH This user is from outside of this forum
              huronbikes@cyberplace.social
              wrote last edited by
              #6

              @da_667 yowza.

              huronbikes@cyberplace.socialH 1 Reply Last reply
              0
              • cr0w@infosec.exchangeC cr0w@infosec.exchange

                @da_667 Sourceforge? Wear gloves.

                astraleureka@social.treehouse.systemsA This user is from outside of this forum
                astraleureka@social.treehouse.systemsA This user is from outside of this forum
                astraleureka@social.treehouse.systems
                wrote last edited by
                #7

                @cR0w @da_667 does sf still dump all of the projects into the same filesystem and fail to prevent different project accounts from touching each others files? project account homedirs being 777 by default was certainly an amusing choice

                cr0w@infosec.exchangeC 1 Reply Last reply
                0
                • astraleureka@social.treehouse.systemsA astraleureka@social.treehouse.systems

                  @cR0w @da_667 does sf still dump all of the projects into the same filesystem and fail to prevent different project accounts from touching each others files? project account homedirs being 777 by default was certainly an amusing choice

                  cr0w@infosec.exchangeC This user is from outside of this forum
                  cr0w@infosec.exchangeC This user is from outside of this forum
                  cr0w@infosec.exchange
                  wrote last edited by
                  #8

                  @astraleureka @da_667 No idea but that's hilarious.

                  astraleureka@social.treehouse.systemsA 1 Reply Last reply
                  0
                  • cr0w@infosec.exchangeC cr0w@infosec.exchange

                    @astraleureka @da_667 No idea but that's hilarious.

                    astraleureka@social.treehouse.systemsA This user is from outside of this forum
                    astraleureka@social.treehouse.systemsA This user is from outside of this forum
                    astraleureka@social.treehouse.systems
                    wrote last edited by
                    #9

                    @cR0w @da_667 I may or may not have used it to snag some database dumps from a certain game project when I was a kid, and I may or may not have cracked those hashes to get an admins account and unban myself from their forums ๐Ÿ˜Œ

                    cr0w@infosec.exchangeC 1 Reply Last reply
                    0
                    • astraleureka@social.treehouse.systemsA astraleureka@social.treehouse.systems

                      @cR0w @da_667 I may or may not have used it to snag some database dumps from a certain game project when I was a kid, and I may or may not have cracked those hashes to get an admins account and unban myself from their forums ๐Ÿ˜Œ

                      cr0w@infosec.exchangeC This user is from outside of this forum
                      cr0w@infosec.exchangeC This user is from outside of this forum
                      cr0w@infosec.exchange
                      wrote last edited by
                      #10

                      @astraleureka @da_667

                      1 Reply Last reply
                      0
                      • huronbikes@cyberplace.socialH huronbikes@cyberplace.social

                        @da_667 yowza.

                        huronbikes@cyberplace.socialH This user is from outside of this forum
                        huronbikes@cyberplace.socialH This user is from outside of this forum
                        huronbikes@cyberplace.social
                        wrote last edited by
                        #11

                        @da_667 I don't know if it would be of interest to you but I am trying to set up a Suricata build docker container using Alpine.

                        da_667@infosec.exchangeD 1 Reply Last reply
                        0
                        • huronbikes@cyberplace.socialH huronbikes@cyberplace.social

                          @da_667 I don't know if it would be of interest to you but I am trying to set up a Suricata build docker container using Alpine.

                          da_667@infosec.exchangeD This user is from outside of this forum
                          da_667@infosec.exchangeD This user is from outside of this forum
                          da_667@infosec.exchange
                          wrote last edited by
                          #12

                          @huronbikes interesting

                          huronbikes@cyberplace.socialH 1 Reply Last reply
                          0
                          • da_667@infosec.exchangeD da_667@infosec.exchange

                            @huronbikes interesting

                            huronbikes@cyberplace.socialH This user is from outside of this forum
                            huronbikes@cyberplace.socialH This user is from outside of this forum
                            huronbikes@cyberplace.social
                            wrote last edited by
                            #13

                            @da_667 https://codeberg.org/huronbikes/suricata-docker/src/branch/main/build/Dockerfile

                            It's a start, so far it builds on my local machine. To be truly useful, I would need to figure out packaging the build artifacts and creating a target image to actually run Suricata.

                            huronbikes@cyberplace.socialH 1 Reply Last reply
                            0
                            • huronbikes@cyberplace.socialH huronbikes@cyberplace.social

                              @da_667 https://codeberg.org/huronbikes/suricata-docker/src/branch/main/build/Dockerfile

                              It's a start, so far it builds on my local machine. To be truly useful, I would need to figure out packaging the build artifacts and creating a target image to actually run Suricata.

                              huronbikes@cyberplace.socialH This user is from outside of this forum
                              huronbikes@cyberplace.socialH This user is from outside of this forum
                              huronbikes@cyberplace.social
                              wrote last edited by
                              #14

                              @da_667 I'll have to do some work getting hyperscan going for that too. I did the initial cut on my m3 mac so I'll have to deal with processor-architecture specific things since hyperscan appears to be amd64 only.

                              da_667@infosec.exchangeD 1 Reply Last reply
                              0
                              • huronbikes@cyberplace.socialH huronbikes@cyberplace.social

                                @da_667 I'll have to do some work getting hyperscan going for that too. I did the initial cut on my m3 mac so I'll have to deal with processor-architecture specific things since hyperscan appears to be amd64 only.

                                da_667@infosec.exchangeD This user is from outside of this forum
                                da_667@infosec.exchangeD This user is from outside of this forum
                                da_667@infosec.exchange
                                wrote last edited by
                                #15

                                @huronbikes you want to look into vectorscan. That's multi-arch.

                                1 Reply Last reply
                                1
                                0
                                • R relay@relay.infosec.exchange shared this topic
                                Reply
                                • Reply as topic
                                Log in to reply
                                • Oldest to Newest
                                • Newest to Oldest
                                • Most Votes


                                • Login

                                • Login or register to search.
                                • First post
                                  Last post
                                0
                                • Categories
                                • Recent
                                • Tags
                                • Popular
                                • World
                                • Users
                                • Groups