Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
Intrusion Detection and Prevention
»
Zenarmor
« previous
next »
Print
Pages: [
1
]
Author
Topic: Zenarmor (Read 2043 times)
Monju0525
Jr. Member
Posts: 53
Karma: 6
Zenarmor
«
on:
August 12, 2023, 04:21:57 pm »
Using Surricata on lan and zenarmor on wan, tired both L3 native and emulated netmap and the dashboard displays the wan with zero throughput when doing the Ookola up/down speed test? Why? Any suggestions?
I and running wireguard to the vpn.
I think I have the answer.
Currently zenarmor does not support wireguard or openvpn.
Maybe I could put Surricata on the wan and zenarmor on lan
will it work?
https://www.zenarmor.com/docs/troubleshooting/configuration
«
Last Edit: August 12, 2023, 04:30:18 pm by Monju0525
»
Logged
lilsense
Hero Member
Posts: 600
Karma: 19
Re: Zenarmor
«
Reply #1 on:
August 12, 2023, 04:41:24 pm »
It should be opposite... Zen on LAN and surricata on WAN if I understand them correctly.
Logged
Monju0525
Jr. Member
Posts: 53
Karma: 6
Re: Zenarmor
«
Reply #2 on:
August 12, 2023, 07:08:23 pm »
Got it to work using zen on lan and Surricata on wan. If I am using wireguard should the Surricata interface selection be both for wan and wireguard?
Logged
lilsense
Hero Member
Posts: 600
Karma: 19
Re: Zenarmor
«
Reply #3 on:
August 12, 2023, 09:44:21 pm »
you can if you'd like.
Logged
Monju0525
Jr. Member
Posts: 53
Karma: 6
Re: Zenarmor
«
Reply #4 on:
August 13, 2023, 05:22:37 pm »
Zen on lan , suricata on wan, using wireguard to vpn.
Unable to block on Suricata the
http://eicar.eu
download.
I have the rule enabled and on alert.
The logs have no alerts indicating the eicar rule got triggered and was it subsequently downloaded.
«
Last Edit: August 13, 2023, 06:00:13 pm by Monju0525
»
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
Intrusion Detection and Prevention
»
Zenarmor