- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- SnortConvertor Deprecated?
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
SnortConvertor Deprecated?
While the SnortConvertor binary still exists in R80.40, it doesn't seem to work right other than running "dry mode" on a prospective .rules file. Adding and removing SNORT signatures works fine from the SmartConsole but anything other than dry mode with SnortConvertor just seems to throw errors and fail. It also stopped appearing in the official Threat Prevention documentation around R80.20, is it deprecated? Replaced by the API call now?
CET (Europe) Timezone Course Scheduled for July 1-2
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The R80.40 docs explicitly mentions using the API/CLI: https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_ThreatPrevention_AdminGuide/...
That said, it's also referenced in the R80.40 GAIA CLI guide as well (SnortConvertor).
So I'm not sure if it's actually deprecated or not, but I'd be more inclined to use the API to do it.
