Suricata will have a firewall

Started by someone, Today at 05:12:19 AM

Previous topic - Next topic
Suricata is working on implementing a firewall, it can be enabled or not.
It is adding detection of a further eight protocols. Which is good because the rules I wrote do nothing when the protocol cant be detected.
Suricata is moving toward being totally written in rust vs c for freebsd.
There was a mention of maybe splitting IDS from IPS. Not sure how extensive they are talking, like two separate systems, I dont know.
Suricata runs in front of the firewall on opnsense.
I dont mind two firewalls. I would actually have three being there is one on the operating system separate from the router. Which actually blocks some things opnsense firewall and suricata do not catch. It may could be blocked in suricata, I havnt looked for a rule to cover it.