OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • Suricata Multi Select and Change
« previous next »
  • Print
Pages: [1]

Author Topic: Suricata Multi Select and Change  (Read 4085 times)

Stefan

  • Newbie
  • *
  • Posts: 42
  • Karma: 4
    • View Profile
Suricata Multi Select and Change
« on: March 08, 2018, 03:20:30 pm »
Is there a way to select multiple rules and change them all, as a group, from Alert to Drop without having to change them one at a time? Such as, there are 302 netbios rules I want to change to drop. That will take an hour or more to do manually. Likewise with our groupings; malware, OSX, etc.
Logged

Ciprian

  • Sr. Member
  • ****
  • Posts: 284
  • Karma: 50
    • View Profile
Re: Suricata Multi Select and Change
« Reply #1 on: March 09, 2018, 11:18:54 am »
Me too! :)
Logged

SecAficionado

  • Newbie
  • *
  • Posts: 42
  • Karma: 4
    • View Profile
Re: Suricata Multi Select and Change
« Reply #2 on: March 13, 2018, 02:47:28 am »
Yes, that would be great to add!
Logged

dcol

  • Hero Member
  • *****
  • Posts: 635
  • Karma: 51
    • View Profile
Re: Suricata Multi Select and Change
« Reply #3 on: March 14, 2018, 04:45:43 pm »
A better rules management system would be nice. I am sure it will come eventually. But from my perspective, it will probably require a total IDS GUI rewrite. Would be nice to know if something is in the works.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • Suricata Multi Select and Change
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2