| 
    
       15/9/2019 -- 07:58:48 - <Notice> - This is Suricata version 4.1.4 RELEASE
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Notice> - This is Suricata version 4.1.4 RELEASE
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Info> - CPUs/cores online: 80
 
     | 
  
  
     | 
    
       file
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Config> - Adding interface enp94s0f1 from config file
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Config> - luajit states preallocated: 128
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Config> - 'default' server has 'request-body-minimal-inspect-size' set to 32792 and 'request-body-inspect-window' set to 4141 after randomization.
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Config> - 'default' server has 'response-body-minimal-inspect-size' set to 39916 and 'response-body-inspect-window' set to 16079 after randomization.
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Info> - HTTP memcap: 4294967296
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Info> - HTTP memcap: 4294967296
 
     | 
  
  
     | 
    
       /9/2019 -- 07:58:48 - <Info> - FTP memcap: 536870912
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Info> - FTP memcap: 536870912
 
     | 
  
  
     | 
    
       nd parser disabled for modbus protocol.
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Config> - Protocol detection and parser disabled for DNP3.
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Info> - AF_PACKET: Setting IPS mode
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Info> - stats output device (regular) initialized: stats.log
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:48 - <Info> - Running in live mode, activating unix socket
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:54 - <Info> - 46 rule files processed. 20118 rules successfully loaded, 0 rules failed
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:54 - <Info> - Threshold config parsed: 0 rule(s) found
 
     | 
  
  
     | 
    
       15/9/2019 -- 07:58:54 - <Info> - 20118 signatures processed. 1239 are IP-only rules, 6255 are inspecting packet payload, 14871 inspect application layer, 0 are decoder event only
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:19 - <Info> - AF_PACKET IPS mode activated enp94s0f0->enp94s0f1
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:19 - <Info> - af-packet will use '/etc/suricata/ebpf/xdp_filter.bpf' as XDP filter file
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:19 - <Info> - Going to use 30 thread(s)
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - AF_PACKET IPS mode activated enp94s0f1->enp94s0f0
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - af-packet will use '/etc/suricata/ebpf/xdp_filter.bpf' as XDP filter file
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Going to use 30 thread(s)
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f1'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Found an MTU of 3000 for 'enp94s0f0'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Running in live mode, activating unix socket
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Info> - Using unix socket file '/var/run/suricata/suricata-command.socket'
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:20 - <Notice> - all 60 packet processing threads, 7 management threads initialized, engine started.
 
     | 
  
  
     | 
    
       15/9/2019 -- 08:03:34 - <Info> - All AFP capture threads are running.
 
     |