You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I am setting up a Suricata inline IDPS with AF-PACKET. It is a 3 network interfaces device, two of the interfaces are without IP address and the other one is for management purpose. The two network interfaces are for capturing traffic from/to internet to/from internet via the Suricata.
My question is how to apply SSLProxy to the Suricata when Suricata does not have any IP address or port? Any suggestion? Thank you.
The text was updated successfully, but these errors were encountered:
Is Snort listening to port 8080 in UTMFW setup? I installed UTMFW and try to make it work in my setup. I see the line preprocessor sslproxy: ports 8080, 8110, 9199 in "snortinline.conf" file. I would like to figure out how SSLproxy forwards the decrypted data to Snort and why we can't do the same with Suricata. Is there smth missing on the current version of Suricata that does not allow this, which Snort allows so that is why you chose Snort?
I am setting up a Suricata inline IDPS with AF-PACKET. It is a 3 network interfaces device, two of the interfaces are without IP address and the other one is for management purpose. The two network interfaces are for capturing traffic from/to internet to/from internet via the Suricata.
My question is how to apply SSLProxy to the Suricata when Suricata does not have any IP address or port? Any suggestion? Thank you.
The text was updated successfully, but these errors were encountered: