p0f

Benny Pedersen me at junc.eu
Mon Sep 12 21:21:17 CEST 2016


On 2016-09-12 10:37, Christian Rößner wrote:

> /etc/local.d/p0f.start:
> ----------------------------
> #!/bin/bash
> 
> cd /tmp
> p0f -i eth0 -u p0f -o /var/log/p0f.log "tcp dst port 25 and (dst host
> 134.255.226.247 or dst host 2a05:bec0::134:255:226:247)" 2>&1 |
> p0f-analyzer.pl 50000 &
> 
> exit 0
> ----------------------------
> 
> Sending a test mail, the log shows that p0f was called from 
> amavisd-new.
> 
> Any other ideas, please :-)

you imho proved p0f works and next would be why p0f-analyzer does not 
work with installed p0f version 2.0.0-r2 ?

try see if unstable p0f version in gentoo works, what version is amavisd 
tested with ?

  > Thanks in advance

thanks for using gentoo and shareing ebuilds




More information about the amavis-users mailing list