-
Notifications
You must be signed in to change notification settings - Fork 1k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Can`t start sandcat on windows #2782
Comments
Looks like your first issue -- we aim to respond to issues as quickly as possible. In the meantime, check out our documentation here: http://caldera.readthedocs.io/ |
Hi, this looks like a network issue. Can you post your payload/script that starts the agent? Some things you could check:
If nothing helps try to execute the steps manually to see where exactly the error occurs. |
@L015H4CK i didn`t change anything , payload can work on my ubuntu(VM) , both local and VM windows have this error , |
You have to change the ip address in the payload to the ip address of the caldera server. If you did not change anything, it probably still tries to connect to 0.0.0.0. This only works when the agent runs on the same machine as the server. To properly help you I need more information about your general setup. Where does the CALDERA server run? OS? Did you try debugging the problem? Did you run the payload step by step manually? Etc. EDIT: To explain the above errors... Somehow the DownloadData function cannot download the splunkd data. Thus the data variable is null and WriteAllBytes fails. Since no splunkd file has been created, Start-Process fails as well. |
QAQ sorry I change the ip with the nat address(192.168.241.128) of the VM ,CALDERA server run on my kali(VM), i will try to run it step by step |
`Windows PowerShell PS C:\Windows\system32> $server="http://192.168.241.128:8888";
PS C:\Windows\system32> ` C:\Users\IEUser>ping 192.168.241.128 Pinging 192.168.241.128 with 32 bytes of data: Ping statistics for 192.168.241.128: |
I tried to change my kali network mode to bridge mode because I wanted to use it to connect to the ubuntu server on my vps, but the following error occurred: kali opened the external network connection and also opened the port, but the error kept happening ./splunkd -server $server -group red -v |
This issue is stale because it has been open 20 days with no activity. Remove stale label or comment or this will be closed in 5 days |
I want to deploy an agent on my windows(VMware) , I execute the payload in Powershell as admin , but there is an ERROR
The text was updated successfully, but these errors were encountered: