Suricata: The Snort Replacer (Part 3: Rules)
In the previous installment, we configured Suricata and successfully tested it via a simple rule that alerts on ICMP/ping packets being detected. In this part we will cover some aspects about rules. While this will mostly be a quick and dirty overview, it should help you on your way to making Suricata more fit for your network and your personal needs.
|
|
Full Story |
This topic does not have any threads posted yet!
You cannot post until you login.