squid:alerts:suricata_tls_invalid_record_traffic

This is an old revision of the document!


Squid - Alerts - SURICATA TLS invalid record/traffic

Suppress.

suppress gen_id 1, sig_id 2230002

Probably false positives.

There have been some reports of flakiness with the TLS decoder rules in Suricata of late.

There is a post on the Suricata Redmine site about some other TLS issues.


squid/alerts/suricata_tls_invalid_record_traffic.1594805433.txt.gz · Last modified: 2020/07/15 09:30 by 127.0.0.1

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki