Quote from: muchacha_grande on Today at 05:24:47 PMIt's in Services: Unbound DNS: Advanced. The fifth option.
Quote from: fastboot on Today at 08:00:15 AMHi @SonicJoe,
that was my first assumption. I disabled the divert to of the rules that allow the flows. But in my case it did not help. I also checked the corresponding logs for suricata and could not find any blocks. For example "dest_port:123" should trigger a hit in the suricata logs, as this was blocked.
@franco: Help please
app_layer.flow.sip_udp | Total | 10
app_layer.tx.sip_udp | Total | 57