Need help understanding the meaning of the content and/or pcre of these two SID rules?
|
|
2
|
161
|
May 24, 2024
|
DNS request from HOME_NET to HOME_NET - how?
|
|
2
|
193
|
May 24, 2024
|
Suricata Suppress Rules Not Working
|
|
4
|
174
|
May 16, 2024
|
Enabling suricata provided ssh-events.rules
|
|
1
|
169
|
April 25, 2024
|
Unable to unset the flowbits, though the rule is disabled
|
|
2
|
217
|
April 25, 2024
|
Suricata Sending Request & Response Bodies in multiple events due to alert rule
|
|
3
|
304
|
April 25, 2024
|
Suricata rule for user based authentication
|
|
1
|
281
|
April 25, 2024
|
Dropping UDP Traffic Using Suricata with XDP
|
|
2
|
250
|
April 25, 2024
|
Suricata rule - deployment metadata
|
|
3
|
141
|
April 25, 2024
|
Severity levels in eve.json
|
|
3
|
636
|
April 13, 2024
|
Rules for SSH under root
|
|
2
|
595
|
April 11, 2024
|
Order of content modifiers
|
|
3
|
240
|
April 5, 2024
|
Content filtering does not seem to work without other payload keywords
|
|
3
|
269
|
April 4, 2024
|
Testing ssh related rules
|
|
1
|
292
|
April 4, 2024
|
Help with custom rule
|
|
1
|
409
|
March 29, 2024
|
Suricata can't define IP options
|
|
9
|
263
|
March 23, 2024
|
TLS offloaded sensor, suppress certain rules for only that sensor?
|
|
2
|
193
|
March 13, 2024
|
Help with datasets and DNS
|
|
7
|
1599
|
March 11, 2024
|
[RESOLVED] Suricata update rules
|
|
3
|
364
|
March 10, 2024
|
Byte_extract / byte_test string limits
|
|
3
|
281
|
March 5, 2024
|
Packet logging enabled, 2 hits and more then a million packets logged
|
|
2
|
271
|
February 29, 2024
|
Depth of offset for TLS traffic
|
|
3
|
358
|
February 29, 2024
|
Suricata ssh disable for domain bitbucket.org
|
|
1
|
106
|
February 28, 2024
|
Snort rules for Suricata-IDS
|
|
3
|
4752
|
February 25, 2024
|
Suricata generates alerts despite disabled rules
|
|
4
|
558
|
February 23, 2024
|
Dpdk prefilter on assymetrical links
|
|
3
|
232
|
February 6, 2024
|
Suricata not triggering the logs
|
|
1
|
190
|
January 26, 2024
|
Supress inside signature
|
|
2
|
174
|
January 19, 2024
|
I don't know why the sip pcap file is not being detected
|
|
7
|
355
|
January 19, 2024
|
Rules to check if threshold has not been met at the end of a flow
|
|
3
|
164
|
January 16, 2024
|