OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • Suricata/IDS change, not automatically synced to secondary HA node
« previous next »
  • Print
Pages: [1]

Author Topic: Suricata/IDS change, not automatically synced to secondary HA node  (Read 2721 times)

iMx

  • Full Member
  • ***
  • Posts: 202
  • Karma: 15
    • View Profile
Suricata/IDS change, not automatically synced to secondary HA node
« on: March 09, 2019, 10:46:01 am »
Hi there,

Running 19.1.3 making a change to Suricata/IDS, for example changing from Default -> Hypersync pattern matcher, the configuration does not automatically trigger an xmlrcsync of the config to the secondary node.   

I cannot see any attempt for it to do so, I see the Suricata config reload/regeneration in the logs, but no automatic sync.

If I go to Firewall -> HA -> Status -> Synchronize config to backup, the change is replicated.  But it does not seem to trigger automatically.  I would assume it should do?  Is anyone else seeing this?

Other changes, firewall rules for example, DO automatically trigger a change.
Logged

iMx

  • Full Member
  • ***
  • Posts: 202
  • Karma: 15
    • View Profile
Re: Suricata/IDS change, not automatically synced to secondary HA node
« Reply #1 on: March 09, 2019, 10:49:01 am »
P.S. I have ' Intrusion Detection' enabled for configuration sync.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • Suricata/IDS change, not automatically synced to secondary HA node
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2