# more specifc is better for alert accuracy and performance
address-groups:
# Include HOME_NET declaration from external file.
- include /var/ipfire/suricata/suricata-homenet.yaml
+ include: /var/ipfire/suricata/suricata-homenet.yaml
EXTERNAL_NET: "!$HOME_NET"
#EXTERNAL_NET: "any"
##
default-rule-path: /etc/suricata/rules
-rule-files: !include /var/ipfire/suricata/suricata-used-rulefiles.yaml
+rule-files:
+ include: /var/ipfire/suricata/suricata-used-rulefiles.yaml
classification-file: /etc/suricata/classification.config
reference-config-file: /etc/suricata/reference.config