hi, everyone.
i’m super newbie in suricata-ids
i want to capture Our Infra Network Range on Azure cloud based.
so i done build up to suricata-ids for ip range by range
but suricata-ids not capturing to the other ip address.
it can only capture to self.
please somebody help me.
ah! my infra structure is a below
Suricata - 10.0.0.4
Homenet - 10.0.0.0/24
Switch ----------- Suricata ( 10.0.0.4 )
----------- PC1 ( 10.0.0.5 )
----------- PC2 ( 10.0.0.6 )
----------- PC3 ( 10.0.0.7 )
-Symtoms-
Suricata can’t capture 10.0.0.0/24 exclude suricata ip (10.0.0.4/32)