root@OPNsense:~ # cd /usr/local/etc/suricata/root@OPNsense:/usr/local/etc/suricata # ls -a. rule-policies.config.. rule-updater.configclassification.config rulesclassification.config.sample rules.configcustom.yaml suricata.yamlinstalled_rules.yaml suricata.yaml.sampleopnsense.rules threshold.configreference.config threshold.config.samplereference.config.sample
threshold gen_id 1, sig_id 2027757, type threshold, track by_src, count 1, seconds 300
include: threshold.config
root@OPNsense:/usr/local/opnsense/service/templates/OPNsense/IDS # /usr/local/etc/rc.d/suricata startStarting suricata.8/1/2022 -- 10:29:39 - <Info> - Including configuration file installed_rules.yaml.8/1/2022 -- 10:29:39 - <Info> - Configuration node 'rule-files' redefined.8/1/2022 -- 10:29:39 - <Info> - Including configuration file custom.yaml.
threshold-file: /usr/local/etc/suricata/threshold.config