pfsense:suricata:alerts:suricata_tls_invalid_record_type
PFSense - Suricata - Alerts - SURICATA TLS invalid record type
Probably false positives.
There have been some reports of flakiness with the TLS decoder rules in Suricata of late.
There is a post on the Suricata Redmine site about some other TLS issues.
Suppress
#SURICATA TLS invalid record type suppress gen_id 1, sig_id 2230002
pfsense/suricata/alerts/suricata_tls_invalid_record_type.txt · Last modified: 2021/01/15 01:50 by peter