Can anyone offer any advice regarding the above question?
Basically, I have a small program written in python that I would like to start when Suricata triggers a specific alert.
I would like a solution that does not require an interactive logon (such as by reading from stdout for example).
As you can probably tell I’m new to Suricata so I’m struggling to understand how I might achieve this?
Any help gratefully received.