Honeypots
Sebek 3.2.0c linux 2.4.18 Oct 13 2006 07:54AM
Gufo (gaudente gmail com) (1 replies)
Hi all,
I'm facing some problems installing sebek 3.2.0c on an old slackware 8.1
with kernel 2.4.18.

The first glitch is when sbk_install.sh tries to recognise if the
variable MAGIC_VAL have a value different from 0.
To make it stop complaining I simply deleted this check ;)

Sebek compiles correctly, loads and get hidden by cleaner.o but doesn't
log anything(nor keystroke nor remote ssh connections)...at least I
can't)see traffic using a sniffer on a cross-connected machine.

I don't know if it's a configuration problem or an incompability with
linux 2.4.18.

The parameters I use to load sebek are:

DESTINATION_IP="external.ip"
DESTINATION_MAC="the.right.mac.add"
SOURCE_PORT=1234
DESTINATION_PORT=1234
MAGIC_VAL=3716732390
KEYSTROKE_ONLY=1
SOCKET_TRACKING=1
TESTING=0
MODULE_NAME="aname.o"
WRITE_TRACKING=0

Cheers,
Gufo

[ reply ]
Re: Sebek 3.2.0c linux 2.4.18 Nov 09 2006 05:46PM
Gufo (gaudente gmail com)


 

Privacy Statement
Copyright 2010, SecurityFocus