broken services -> instrusion detection

Started by Layla, July 07, 2023, 04:28:49 PM

Previous topic - Next topic
July 07, 2023, 04:28:49 PM Last Edit: July 07, 2023, 05:05:11 PM by Layla
I thought I fixed my broken services -> intrusion detection

I tried everything with my intrusion detection, which was why I bought the router.  I couldn't get to get block anything, and I could only get it sometimes to alert.  Policies wouldn't take and it just seemed broke.


I thought I fixed it with:
system -> Fireware -> Packages -> suricata -> reinstall

magically everything started working.



My hardware:
brand new DEC740 fresh out the box,

software version:
Type    opnsense   
Version    23.1.11   
Architecture    amd64   
Commit    f1305748e   
Mirror    https://pkg.opnsense.org/FreeBSD:13:amd64/23.1   
Repositories    OPNsense   
Updated on    Wed Jul 5 23:42:46 CDT 2023   
Checked on    N/A

Layla

July 07, 2023, 04:59:52 PM #1 Last Edit: July 07, 2023, 05:05:59 PM by Layla
edit: This does not seem to have completely fixed my issues, when I went to verify function today it did not work again.

I tried reinstalling the module again, and lost all internet, much to my shock.  Promptly disabled the entire intrusion detection service.  This will be another midnight project :(.

rebooting lets me re-enable to module without it dropping all internet

restarting the service results in it dropping all internet


either way it simply seems to just be broke.  very frustrating.