Project

General

Profile

Actions

Documentation #5690

open

Document the differences between IPS and IDS mode.

Added by Jason Ish over 1 year ago. Updated 3 months ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

For example, in IDS mode an alert is generated on the "ack" to the alert generating traffic which does lead to some confusion that comes up periodically. I believe there are other differences as well that I can't recall at this time.


Related issues 1 (1 open0 closed)

Related to Suricata - Bug #3480: EVE JSON - Incorrect Packet LoggedNewOISF DevActions
Actions

Also available in: Atom PDF