OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • Snort Rules will not install on Suricata
« previous next »
  • Print
Pages: [1]

Author Topic: Snort Rules will not install on Suricata  (Read 3075 times)

andrewoliv

  • Newbie
  • *
  • Posts: 23
  • Karma: 1
    • View Profile
Snort Rules will not install on Suricata
« on: May 06, 2022, 05:25:19 pm »
I am running the current version of OPNSense: 22.1.6

I am running Suricata 6.0.4_1

I went to the Snort website and obtained an OINK Code

I go to: Intrusion Detection ==>Administration==>Downloads

I enter the OINK code and Rules file (snortrules-snapshot-29151.tar.gz, 29190 is the latest and I have tried that too)

The Plug In is installed: os-intrusion-detection-content-snort-vrt (installed)

I attempt to download the rules, however I get the message "Not Installed" under the Last Updated heading

What am I missing?
Logged

Manfred.Knick

  • Newbie
  • *
  • Posts: 16
  • Karma: 0
    • View Profile
Re: Snort Rules will not install on Suricata
« Reply #1 on: May 22, 2022, 04:05:27 pm »
Services: Intrusion Detection: Administration --> Download

. . . TOP: "Enable selected"

. . . BOTTOM: "Save"  &&  "Download & Update Rules"

I had to get used to clicking all of them in the correct sequence ...

H.t.h.

Logged

markanovemg

  • Newbie
  • *
  • Posts: 1
  • Karma: 0
    • View Profile
Re: Snort Rules will not install on Suricata
« Reply #2 on: March 02, 2023, 08:00:30 am »
If you are using community subscription of snort then put "snort3-community-rules.tar.gz" in snort_vrt.rulesfile box, then click "Downloads & Update Rules". It takes time..
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • Snort Rules will not install on Suricata
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2