Project

General

Profile

Actions

Feature #781

closed

IDS using NFLOG iptables target

Added by Premysl Hruby about 11 years ago. Updated almost 10 years ago.

Status:
Closed
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:

Description

It would be super nice if Suricata would be able to process packets send from NFLOG iptables target.

Usecases:
  • More complex filtering of trafic which should be checked by Suricata
  • Using Suricata only on traffic which got ACCEPTed by iptables, no-one is interested about traffic he's droping on FW
Actions

Also available in: Atom PDF