Project

General

Profile

Actions

Feature #3311

open

Add better default suricata configuration for different traffic sizes and cpu/system architectures

Added by Peter Manev over 4 years ago. Updated over 4 years ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

Related to improving Out of the Box Experience.

Often enough users struggle with coming up with a decent 1Gbps suricata.yaml config for example. It will be useful in terms of user experience to ship/install Suricata with some recommendations/examples for the following scenarios:
- 1 Gpbs
- 10 Gbps
- 2-3 (sniffing) port
- IPS set up for AFP

etc..
The above should be based on certain assumptions (mainly available CPU/RAM etc).

Actions

Also available in: Atom PDF