Project

General

Profile

Actions

Support #3811

closed

eni monitoring

Added by Punith Raya almost 4 years ago. Updated about 2 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Affected Versions:
Label:
Beginner

Description

I have configured my suricata.yaml file as below :
-----------------------
address-groups:
HOME_NET: "[192.168.0.0/16,10.0.0.0/8,172.16.0.0/12]"
#HOME_NET: "[192.168.0.0/16]"
#HOME_NET: "[13.58.207.139/32]"
#HOME_NET: "[172.16.0.0/12]"
#HOME_NET: "any"
-----------------------

My interface (eni-xxxx) private IP is -172.31.xx.xx but still i couldn't capture any events in eve.json file, i could see only suricata installed server traffic in eve.json file.

Do i need to configure anything else in order to get (eni-xxxx) private IP traffic?

Actions

Also available in: Atom PDF