This creates some overhead that we do not need and rules need to
be adjusted to match any direction they are supposed to match.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
# Write file header.
print FILE "#Autogenerated file. Any custom changes will be overwritten!\n";
# Write file header.
print FILE "#Autogenerated file. Any custom changes will be overwritten!\n";
- # Tune rules to monitor in both directions.
- print FILE "modifysid \* \"\-\>\" \| \"\<\>\"\n";
-
# Check if the traffic only should be monitored.
unless($ruleaction eq "alert") {
# Tell oinkmaster to switch all rules from alert to drop.
# Check if the traffic only should be monitored.
unless($ruleaction eq "alert") {
# Tell oinkmaster to switch all rules from alert to drop.
etc/suricata/suricata.yaml
srv/web/ipfire/cgi-bin/credits.cgi
srv/web/ipfire/cgi-bin/proxy.cgi
etc/suricata/suricata.yaml
srv/web/ipfire/cgi-bin/credits.cgi
srv/web/ipfire/cgi-bin/proxy.cgi
+var/ipfire/ids-functions.pl