OPNsense Forum

English Forums => Intrusion Detection and Prevention => Topic started by: Stefan on March 08, 2018, 03:20:30 pm

Title: Suricata Multi Select and Change
Post by: Stefan on March 08, 2018, 03:20:30 pm
Is there a way to select multiple rules and change them all, as a group, from Alert to Drop without having to change them one at a time? Such as, there are 302 netbios rules I want to change to drop. That will take an hour or more to do manually. Likewise with our groupings; malware, OSX, etc.
Title: Re: Suricata Multi Select and Change
Post by: Ciprian on March 09, 2018, 11:18:54 am
Me too! :)
Title: Re: Suricata Multi Select and Change
Post by: SecAficionado on March 13, 2018, 02:47:28 am
Yes, that would be great to add!
Title: Re: Suricata Multi Select and Change
Post by: dcol on March 14, 2018, 04:45:43 pm
A better rules management system would be nice. I am sure it will come eventually. But from my perspective, it will probably require a total IDS GUI rewrite. Would be nice to know if something is in the works.