[prads-users] How do I submit that prads is labeling OS's wrong?

Edward Bjarte Fjellskål edward.fjellskal at redpill-linpro.com
Thu May 20 08:46:27 CEST 2010


Andy Berryman wrote:
> I let prads run for the last 18 hours and just created my xml file with
> prads2snort.pl. I'm looking through the xml file now and every Windows
> box is labeled as running "XP" under <VERSION> no matter if it's Windows
> server 2003, Vista, or Windows 7. They all show as XP.
>  
> What do you need from me to submit to fix this?
> 

Hi Andy,

Can you extract from prads-asset.log 3 examples ?
One for each windows version?

like for a Vista machine with IP x.x.x.x:
grep "x.x.x.x" /var/log/prads-asset.log > /tmp/vista.log

and the same for WS2003 and W7 etc?

You may obfuscate the real IPs :)

Attache the vista.log , ws2k3.log and w7.log here.

Regards,
Edward

> 
> Thanks,
> 
> Andy Berryman


More information about the prads-users mailing list