Categorizing rules related to usecases
|
|
1
|
37
|
October 21, 2024
|
Creating a custom suricata rule
|
|
11
|
159
|
October 18, 2024
|
Can you force UDP packet to be parsed as UDP-ESP instead?
|
|
1
|
21
|
October 13, 2024
|
Allow domain and all subdomains/redirects
|
|
3
|
118
|
September 24, 2024
|
Can Suricata track TCP sessions
|
|
4
|
70
|
August 30, 2024
|
What triggers event.type as dns?
|
|
3
|
37
|
August 29, 2024
|
Signature for dropping TCP RST attack
|
|
4
|
120
|
August 20, 2024
|
What is the purpose of Suricata rules which have sid 2200000-2299999?
|
|
4
|
95
|
August 7, 2024
|
Is there any way in a rule to match a packet marked by iptables?
|
|
1
|
160
|
July 31, 2024
|
Filesize keyword suricata
|
|
1
|
93
|
July 31, 2024
|
Suricata-update - Error -- Dataset file was not found
|
|
2
|
104
|
July 31, 2024
|
Use case of elk using suricata
|
|
1
|
158
|
July 31, 2024
|
Suricata protocol DCERPC cannot trigger alert when adding new rule
|
|
3
|
49
|
July 31, 2024
|
Found duplicate rule SID XXXX with same revision, keeping the first rule seen
|
|
1
|
116
|
July 26, 2024
|
Suricata Rule to monitor all the HTTPS Request with dest port 443
|
|
3
|
125
|
July 17, 2024
|
Other sources of rules?
|
|
5
|
398
|
July 13, 2024
|
Warning: detect-flowbits: flowbit is checked but not set
|
|
1
|
901
|
July 9, 2024
|
Impossible to install suricata-update from repo github
|
|
17
|
186
|
July 7, 2024
|
Does suricata provides attacks/alerts with its counters?
|
|
4
|
117
|
July 1, 2024
|
Suricata SID-Descriptions-ETOpen.json
|
|
3
|
98
|
June 26, 2024
|
Tls_state keyword unsupported
|
|
3
|
108
|
June 20, 2024
|
Unable require scripts in lua
|
|
4
|
152
|
June 8, 2024
|
MySQL dictionary attack rule
|
|
2
|
119
|
June 6, 2024
|
Parsing errors related to rule keywords associated to DNS protocol
|
|
1
|
106
|
June 3, 2024
|
NMAP detection rules for Suricata in GitHub
|
|
6
|
1154
|
May 26, 2024
|
Need help understanding the meaning of the content and/or pcre of these two SID rules?
|
|
2
|
150
|
May 24, 2024
|
DNS request from HOME_NET to HOME_NET - how?
|
|
2
|
186
|
May 24, 2024
|
Suricata Suppress Rules Not Working
|
|
4
|
169
|
May 16, 2024
|
Enabling suricata provided ssh-events.rules
|
|
1
|
168
|
April 25, 2024
|
Unable to unset the flowbits, though the rule is disabled
|
|
2
|
207
|
April 25, 2024
|