OPNsense Forum

Archive => 17.7 Legacy Series => Topic started by: rogge+opnsense on September 08, 2017, 05:05:28 am

Title: Intrusion Detection - downloading abuse.ch
Post by: rogge+opnsense on September 08, 2017, 05:05:28 am
I'm new to OPNsense, please help me enable and verify IDS/IPS for abuse.ch (https://docs.opnsense.org/manual/how-tos/ips-feodo.html (https://docs.opnsense.org/manual/how-tos/ips-feodo.html))

When i verify rules have been created, the count is the same as before: 282. When i search for Feodo, no rule results show.

How do i verify I have enabled IDS/IPS correctly for abuse.ch? How do i read the log file for IDS?


Note: i have some counties blocked and alerts are generated; but i don't know about the abuse.ch rules.


OPNsense 17.7.1