I’d like to install the default rules included by running suricata-update
on my suricata installation which does not have internet access. I am running suricata 6.0.2 which I installed from an RPM.
I have downloaded the tar containing the rules from: https://rules.emergingthreats.net/open/suricata-6.0.2/emerging.rules.tar.gz
Then, I extracted the rules from the above tar file and tried copying them into the below directories, then running suricata-update. I referenced this page GitHub - OISF/suricata-update: The tool for updating your Suricata rules. to find the directories.
/etc/suricata/rules/
/usr/share/suricata/rules
/var/lib/suricata/update/cache
However, running suricata-update did not seem to add any new rules:
13/4/2021 -- 14:22:29 - <Info> -- Loaded 352 rules.
Is there a recommended way to install the default rules on a server without internet access?