Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
Zenarmor (Sensei)
»
Zenarmor and Suricate together?
« previous
next »
Print
Pages: [
1
]
Author
Topic: Zenarmor and Suricate together? (Read 753 times)
Reflection156
Newbie
Posts: 3
Karma: 0
Zenarmor and Suricate together?
«
on:
July 27, 2024, 04:56:36 pm »
Dear OPNsense users,
Maybe this question has been asked before, but I couldn't find it when searching.
Here's what I want to know:
Do you still need Intrusion Detection if you're running a Zenarmor home license?
Today, I removed the MongoDB database and configured Zenarmor to use Elasticsearch. During this process, I was asked which interface I wanted to protect.
Previously, I had it set to the LAN interface, which includes various sub-interfaces.
Is it smarter to set it to the WAN interface?
And what should I do with the Intrusion Detection that's included in OPNsense? Should I also set this to an interface?
My firewall appliance has enough processing power and memory to run both, but is it advisable?
I hope someone can point me in the right direction.
Thank you in advance.
Kind regards,
Michel
Logged
sy
Hero Member
Posts: 600
Karma: 45
Re: Zenarmor and Suricate together?
«
Reply #1 on:
July 28, 2024, 12:48:27 pm »
Hi Michel,
The best practice is to protect the LAN interface(s) on Zenarmor and the WAN interface(s) on Suricata. You can not use them on the same interface due to netmap limitation.
Logged
Reflection156
Newbie
Posts: 3
Karma: 0
Re: Zenarmor and Suricate together?
«
Reply #2 on:
July 30, 2024, 10:10:10 pm »
Hi Sy,
Thank you for the info.
I’ve set is up in your way.
Kind regards,
Michel
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
Zenarmor (Sensei)
»
Zenarmor and Suricate together?