Hello everyone,
I am building AWS infrastructure where AWS Network Firewall is used, and it is inspecting connections where PPv2 header is sent (header at the beginning of a TCP stream). Is it currently possible to write Suricata rules that are matching client IP addresses carried in this header? I see there were some inquiries regarding this some years ago, but I don’t know what is status today.
Thank you.
For reference: