Hello Suricata Community,
We’re excited to announce the release of IDSTower v3.0.0, a major update to our IDS management platform that brings significant enhancements for Suricata deployments.
Key Highlights:
Enhanced IDS Rules Editing Experience
-
Syntax highlighting and auto-completion for IDS rules
-
Built-in documentation directly in the rules editor
-
Improved configuration file editing with syntax highlighting and built-in descriptions
-
Professional rules editing experience for managing your Suricata rules
Multi-Instance Architecture (Enterprise Feature)
Hosts can now run multiple Suricata instances with isolated configurations, enabling advanced use-cases for high-performance setups and multi-tenancy with better resource utilization and flexibility.
IDS Rules Deployment Templates
A new template-based system for managing IDS rule deployments across Clusters, Configuration Groups, Hosts, and Instances, giving you granular control over which rules are deployed where.
Suricata 8 Support
Full compatibility with Suricata 8
Additional Features:
-
Filebeat 9 support with updated repository management
-
Feed pagination for TAXII and MISP API feeds
-
Configuration Profile upgrade warnings with one-click upgrade
-
Critical disk usage protection (auto-manages logs at 90% threshold)
-
Support for new operating systems: AlmaLinux 10, Rocky Linux 10, Oracle Linux 10, Ubuntu 25.04, and Debian 13
Getting Started:
-
Quick Installation: https://idstower.com/docs/quick_install.html
-
Upgrade Guide: https://idstower.com/docs/upgrade/upgrade_from_v2.9.x_to_v3.0.0.html
-
Full Changelog: https://idstower.com/docs/changelog.html
We’d love to hear your feedback and questions!
Best regards