OPNsense Forum

English Forums => Intrusion Detection and Prevention => Topic started by: slair on May 12, 2021, 11:38:58 PM

Title: emerging-inappropriate.rules empty
Post by: slair on May 12, 2021, 11:38:58 PM
Is there a bug in the download of the "ET telemetry/emerging-inappropriate" ruleset?  IPS is working fine for us, except for this ruleset won't download - or it is downloading an empty file:

root@FW01:/usr/local/etc/suricata/rules # cat ./emerging-inappropriate.rules
#@opnsense_download_hash:ca29d292746f11f4023a7c2b41297518

root@FW01:/usr/local/etc/suricata/rules # ls -l ./emerging-inappropriate.rules
-rw-r-----  1 root  wheel  58 May 12 21:27 ./emerging-inappropriate.rules


If this ruleset  is no longer included as part of ET telemetry, perhaps it can be added to ET Open?  It looks like ProofPoint is still maintaining this ruleset:

https://rules.emergingthreats.net/open/suricata/rules/emerging-inappropriate.rules

Thanks
Title: Re: emerging-inappropriate.rules empty
Post by: ArabianKnight on September 13, 2024, 04:21:56 PM
We are experiencing the same issue, was a fix for this ever found?

The ruleset claims to be installed but no actual rules are loaded. All the other ET telemetry rulesets are working as expected.

I have tried updating the firmware and reinstalling the ruleset, but we get the same result every time.

Thanks