Quote from: chemlud on December 02, 2025, 08:21:17 PMAre you exposing ports on WAN?I agree with your point, it's really useful!
If not: why run Suricata on that interface in the first place? To watch and see that the internet is a bad, bad place? :-D
Or at least disabel SSH rules, if no ssh port open...
"