Hello All. Suricata newbie here. I am using suricata 7.0.8 in Opnsense 24.7.11. I am getting a lot of warnings such as Warning suricata [100749] – flowbit ‘ET.pdf.in.http’ is checked but not set. Checked in 2017150 and 0 other sigs for a lot of the rules. Is this normal and if not what could be causing this. I would assume all the ET rules I have enabled would be compatible with suricata.
Related topics
Topic | Replies | Views | Activity | |
---|---|---|---|---|
[errcode: sc_warn_flowbit(306)] | 3 | 3863 | March 23, 2022 | |
Flowbit issues (proofpoint) | 3 | 28 | December 9, 2024 | |
SID Management Question | 1 | 567 | July 3, 2023 | |
Keyword: flowbits:isset,http.dottedquadhost | 3 | 509 | January 31, 2023 | |
Emerging Threats PRO/OPEN Ruleset for Suricata 7.0.3 Now Available | 0 | 3980 | June 19, 2024 |