1
Intrusion Detection and Prevention / IDS on traffic passing through web proxy
« on: March 05, 2023, 01:23:37 pm »
Most internet traffic is encrypted these days, so without decryption, a lot is going to slip passed any IDS. I have the web proxy configured on my system, and my assumption was that the Suricata service would take advantage of this and scan the traffic as it was decrypted by the web proxy. This doesn't seem to be the case however. Is there any way to have Squid pass the traffic to Suricata for scanning?
Thanks
Thanks