Intrusion Detection - downloading abuse.ch

Started by rogge+opnsense, September 08, 2017, 05:05:28 AM

Previous topic - Next topic
I'm new to OPNsense, please help me enable and verify IDS/IPS for abuse.ch (https://docs.opnsense.org/manual/how-tos/ips-feodo.html)

When i verify rules have been created, the count is the same as before: 282. When i search for Feodo, no rule results show.

How do i verify I have enabled IDS/IPS correctly for abuse.ch? How do i read the log file for IDS?


Note: i have some counties blocked and alerts are generated; but i don't know about the abuse.ch rules.


OPNsense 17.7.1