Hi ! I’m following alerting documentation and trying to trigger 2100498 alert.
So I’m reading fast.log and then curl as it’s described in doc, but can’t see the alert. I tried twice in 2 different Suricata installs with same results.
Can you see other traffic with Suricata? Do you have that rule in your rulefile and are you loading the correct rulefile?
It would be helpful to know where your Suricata instance is, what is your configuration, what is the rule file and the command line that you run Suricata with.