View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
0002613 | Kali Linux | Kali Package Bug | public | 2015-09-02 21:05 | 2018-01-29 11:54 |
Reporter | chaberman | Assigned To | g0tmi1k | ||
Priority | low | Severity | tweak | Reproducibility | always |
Status | closed | Resolution | suspended | ||
Product Version | 1.1.0 | ||||
Summary | 0002613: Creating timeline in Autopsy v2.24 (Sleuthkit) calls wrong path for file | ||||
Description | Autopsy v2.24 (sleuthkit) uses the /usr/bin/mactime-sleuthkit file to generate timelines from the "body" file generated in the first step of the timeline process. When you attempt to create the timeline from the body file sleuthkit throws a not found error: sh: 1: /usr/bin/mactime-sleuthkit: not found The correct file is in the /usr/bin directory it is just named incorrectly. The file is named mactime while sleuthkit expects it to be mactime-sleuthkit. Copying the file and renaming the copy to mactime-sleuthkit fixes the issue. This is for Kali 2.0 by the way, there was no product version option for it in the drop down menu. | ||||
Steps To Reproduce | -Open/Create Case Expected result: Timeline would be created Actual result: Error thrown in the sleuthkit command window: sh: 1: /usr/bin/mactime-sleuthkit: not found | ||||
Additional Information | Exact same issue as seen here on the sans investigative forensics toolkit github: https://github.com/sans-dfir/sift/issues/41 | ||||
Due to the age of the OS (Kali Moto [v1], Kali Safi [v2], Kali Rolling 2016.x), these legacy versions are no longer supported. Please could you see if you are able to replicate this issue with the latest version of Kali Linux - https://www.kali.org/downloads/)? If you are still facing the same problem, feel free to re-open the ticket. If you choose to do this, could you provide more information to the issue you are facing,and also give information about your setup? |
|