Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - f1ne

#1
Hi,

I'm trying to set up a scheme like this:
WAN -> stunnel (OPNsense) -> site (LAN).
stunnel acts as a TLS termination proxy.
This works, but Suricata does not see traffic between stunnel and the site on the LAN. How can this be fixed? I specifically applied TLS termination to OPNsense so that Suricata could see the decrypted traffic, but it does not see it, only the site's responses to clients are in the logs.

Thanks!