Project

General

Profile

Actions

Bug #12119

closed

[dashboard] WAN traffic graph displays no data when suricata is enabled

Added by Erik Schaeffer about 4 years ago. Updated about 4 years ago.

Status:
Not a Bug
Priority:
Normal
Assignee:
-
Category:
Traffic Graphs
Target version:
-
Start date:
07/09/2021
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default
Affected Version:
2.5.2
Affected Architecture:

Files

2021-07-09_20-52-00.png (96.9 KB) 2021-07-09_20-52-00.png Erik Schaeffer, 07/09/2021 08:53 PM
2021-07-09_20-49-51.png (104 KB) 2021-07-09_20-49-51.png Erik Schaeffer, 07/09/2021 08:53 PM
Actions #1

Updated by Erik Schaeffer about 4 years ago

Attaching screenshots of the issue.

Actions #2

Updated by Max Leighton about 4 years ago

I'm not able to reproduce this with Suricata 6.0.0_11 in pfSense 2.5.2 or 2.6. I tried with blocking mode enabled and disabled on WAN and my Traffic Graphs widget continues to show graph data. More details on how to reproduce will be needed I think.

Actions #3

Updated by Erik Schaeffer about 4 years ago

Certainly!

pfsense ver: 2.5.2
suricata ver: 6.0.0_11

Suricata Options Other than defaults:
- Block Offenders: Enabled
- IPS Mode: Inline

I saw this issue on both VMXNET3, e1000, and Intel Gig NICs. Let me know what else I can provide that would be helpful. Thank you!

Actions #4

Updated by Erik Schaeffer about 4 years ago

WAN Interface is a standard DHCP setup

Actions #5

Updated by Jim Pingle about 4 years ago

  • Status changed from New to Not a Bug

This is normal and expected when using inline mode and NETMAP. The interface behavior is fundamentally different in that mode and it does not keep statistics since they can degrade performance.

Actions

Also available in: Atom PDF