Issues logging into sguil

321 views
Skip to first unread message

Naveen Urs

unread,
Jan 21, 2015, 11:13:23 PM1/21/15
to securit...@googlegroups.com
Hello,

I am not able to login to sguil.

I get the following error:

On Popup menu:
Mismatched versions.
SERVER: ()
CLIENT: (SGUIL-0.9.0 OPENSSL ENABLED)

I have tunneled to the server.

I see the following line on the console:
channel 11: open failed: connect failed: Connection refused

I thought that it might be because I provided the wrong credentials. However, that is not the case as I can use the same credentials and login to ELSA.

Can you please help?

Naveen.

Doug Burks

unread,
Jan 22, 2015, 3:43:45 PM1/22/15
to securit...@googlegroups.com
Hi Naveen,

Replies inline.

On Wed, Jan 21, 2015 at 11:13 PM, Naveen Urs <navee...@gmail.com> wrote:
> Hello,
>
> I am not able to login to sguil.
>
> I get the following error:
>
> On Popup menu:
> Mismatched versions.
> SERVER: ()
> CLIENT: (SGUIL-0.9.0 OPENSSL ENABLED)

Is your server fully updated and running Sguil 0.9?

> I have tunneled to the server.
>
> I see the following line on the console:
> channel 11: open failed: connect failed: Connection refused

How exactly did you tunnel to the server? What ports are you
forwarding across the tunnel?

> I thought that it might be because I provided the wrong credentials. However, that is not the case as I can use the same credentials and login to ELSA.
>
> Can you please help?
>
> Naveen.
>
> --
> You received this message because you are subscribed to the Google Groups "security-onion" group.
> To unsubscribe from this group and stop receiving emails from it, send an email to security-onio...@googlegroups.com.
> To post to this group, send email to securit...@googlegroups.com.
> Visit this group at http://groups.google.com/group/security-onion.
> For more options, visit https://groups.google.com/d/optout.



--
Doug Burks
Need Security Onion Training or Commercial Support?
http://securityonionsolutions.com

Naveen Urs

unread,
Jan 23, 2015, 11:43:11 AM1/23/15
to securit...@googlegroups.com
Doug,

I upgraded both the server and the client to the latest version at the same time using the soup command.

The command use to tunnel in is:

sudo ssh -X user@server -L443:localhost:443 -L444:localhost:444 -L7734:localhost:7734 -L3154:localhost:3154 -L9876:localhost:9876

Regards,
Naveen.

Naveen Urs

unread,
Jan 23, 2015, 11:50:32 AM1/23/15
to securit...@googlegroups.com
The weird thing is I am able to connect to the sguil instance now without changing anything. Where does sguil logs go to?

Doug Burks

unread,
Jan 23, 2015, 12:22:38 PM1/23/15
to securit...@googlegroups.com
sguild logs go to /var/log/nsm/securityonion/sguild.log.
Reply all
Reply to author
Forward
0 new messages