Suricata, Zenarmor , interfaces and vpn

Started by Monju0525, February 17, 2024, 02:26:12 AM

Previous topic - Next topic
I am currently using a vpn via Wireguard. It works great.
Zenarmor is assigned to the lan. What should Suricata (IDS)  be assigned to : the wan or the wireguard_interface?
Under the IDS advanced mode, do I need to modify home networks? The helps says  "Networks to interpret as local", what does that mean?

I know it's an old topic..

But I believe you should select your LAN interface only in Suricata. If not, correct me below via a reply comment.
Hardware: DEC3852
Version: OPNsense v25.7.5