OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • IDS Logs
« previous next »
  • Print
Pages: [1]

Author Topic: IDS Logs  (Read 1350 times)

danderson

  • Full Member
  • ***
  • Posts: 107
  • Karma: 9
    • View Profile
IDS Logs
« on: November 10, 2022, 09:24:22 pm »
So since the middle of last month, around Oct 13, so was that 22.7.6 timeframe, including 27.7.7_1 and continuing.

I cant see logs / alerts in the IDS Alerts tab/page.  But looking at the eve.json in /var/log/suricata/eve.json there is data there.  At first it wasnt creating logs, so I deleted all old history and then it re-created the eve.json and logs are now showing up there, still not in the alerts tab.

Any ideas? anyone else have the same issue?

« Last Edit: November 10, 2022, 09:38:45 pm by danderson »
Logged

danderson

  • Full Member
  • ***
  • Posts: 107
  • Karma: 9
    • View Profile
Re: IDS Logs
« Reply #1 on: November 14, 2022, 08:42:43 pm »
its working, eve.json was only showing anomaly's when I first posted, let it run longer and any alert or drop shows in the alerts tab. Anomaly's dont show up.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • IDS Logs
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2