1
Intrusion Detection and Prevention / Re: How can Suricata function prior to scrub?
« on: February 17, 2024, 01:22:05 am »
The placement of Suricata before pf scrubbing in the packet flow diagram may seem counterintuitive at first, especially considering potential fragmentation issues. However, Suricata's ability to process traffic before pf scrubbing is based on its integration with libpcap and its packet processing capabilities.