pfsense:suricata:install_suricata
This is an old revision of the document!
Table of Contents
PFSense - Suricata - Install Suricata
There are multiple parts to this:
Created a suppress list
To suppress certain snort and ET signatures since initially there a bunch of False Positives.
This is accomplished under Services → Suricata → Suppress.
NOTE: This shows a suppresslist named WANSuppressList.
In order for this specific list to be used:
- Navigate to Services → Suricata → Interfaces.
- Edit the specific interface; in this example WAN.
- Within WAN Settings, go to Alert Suppression and Filtering and select this suppresslist.
- Click Save.
Rule categories
Choose what rule categories to enable:
Navigate to Services → Suricata → Interfaces → WAN Categories.
pfsense/suricata/install_suricata.1611318159.txt.gz · Last modified: 2021/01/22 12:22 by peter