Network Range is not captured in Azure

hi, everyone.
i’m super newbie in suricata-ids

i want to capture Our Infra Network Range on Azure cloud based.
so i done build up to suricata-ids for ip range by range
but suricata-ids not capturing to the other ip address.
it can only capture to self.

please somebody help me.

ah! my infra structure is a below

Suricata -
Homenet -

Switch ----------- Suricata ( )
----------- PC1 ( )
----------- PC2 ( )
----------- PC3 ( )

Suricata can’t capture exclude suricata ip (


Try running tcpdump on the Suriata host. Can you see traffic from PC1-3?
It not then you have probably failed to configure the span port on the switch correctly.