Post by: manuel on July 15, 2021, 12:09:47 pm

Title: Struggling with Suricata
Post by: manuel on July 15, 2021, 12:09:47 pm
I'm struggling with suricata quite a long time. I activated it today since long time ago again and I reckon that's not working properly. I'm sending all logs to pfelk and my kibana log is empty. If I check the Alerts Tab in Intrusion Detection --> Administration --> Alerts the last shown log entries are back from 2019.

My config looks like the following.

There are a lot of threads in this forum and I also checked the Wiki from opnsense. Could you please help me, where should I start?

Thank you for your help.

Regards Manuel