When Suricata 7.0.10 outputs alert logs in eve.json, how can one know which part of the packet's keyword was matched by the rule?
|
|
0
|
18
|
April 27, 2025
|
Suricata 7.0.7 af-packet IPS mode slow down internet web browsing
|
|
0
|
16
|
April 22, 2025
|
DPDK Mode - Support for L3 In-Line Configuration (iptables/nftables equivalent)
|
|
0
|
17
|
April 20, 2025
|
Suricata support breakout mode?
|
|
1
|
11
|
April 20, 2025
|
Maintaining custom tags for tag conditional pcap-log configuration
|
|
0
|
6
|
April 9, 2025
|
Capture file not always exsits for alerts (Suricata v.7 Conditional PCAP)
|
|
5
|
586
|
April 9, 2025
|
I have some questions about suricata
|
|
7
|
52
|
April 9, 2025
|
Suricata 7.0.10 After unix-socket is Enabled, Logs cannot be output to eve.json. How can I Output logs to eve.json at the same time or Transmit Logs through unix-socket
|
|
1
|
16
|
April 7, 2025
|
High traffic rulesets to use and wazuh configuration
|
|
3
|
39
|
April 7, 2025
|
Suricata 7.0.10 cannot enable the unix-socket configuration
|
|
5
|
23
|
April 2, 2025
|
Interface ok, eve.json ok porem da erro no log wazuh
|
|
2
|
31
|
March 31, 2025
|
Suricata version7.0.9 failed to enable the bpf filter in af_packet mode
|
|
5
|
33
|
March 31, 2025
|
Need help on Design of multiple instances of Suricata
|
|
4
|
34
|
March 28, 2025
|
In 7.0.9 missing libpcre2-8-devel
|
|
6
|
49
|
March 24, 2025
|
Af-packet keeps trying to find interface eth0. I specified a different one already
|
|
5
|
574
|
March 19, 2025
|
Packet Filter (BPF) not working / ignored
|
|
13
|
125
|
March 13, 2025
|
ICMP limit does not work
|
|
7
|
44
|
March 8, 2025
|
Suricata alerts view set to 5000
|
|
1
|
17
|
February 28, 2025
|
Ppa broken? Release' does not have a Release file
|
|
1
|
18
|
February 25, 2025
|
Changing timestamp format in output json file
|
|
1
|
16
|
February 23, 2025
|
Suricata not detecting intrusion on other docker containers within the same network
|
|
3
|
55
|
February 17, 2025
|
Alert for unidirectional traffic
|
|
1
|
24
|
February 12, 2025
|
Implications of bypassing encrypted traffic
|
|
1
|
44
|
February 12, 2025
|
Suricata fast.log help!
|
|
1
|
38
|
February 12, 2025
|
No alerts in the eve.json logfile
|
|
3
|
117
|
February 12, 2025
|
There is no signout button
|
|
1
|
15
|
February 10, 2025
|
Keep getting spammed with ET SHELLCODE Common 0a0a0a0a Heap Spray String from an address
|
|
2
|
56
|
February 4, 2025
|
Suricata - Crowdsec
|
|
5
|
152
|
January 15, 2025
|
External support for setting up throttling for DIAMETER and GSM_MAP over SCTP in telecom network
|
|
0
|
19
|
January 10, 2025
|
FYI: You might find the usecase of Suricata stats interesting
|
|
0
|
46
|
January 9, 2025
|