Feature #16092
open
Separate IDS/IPS and link-local firewall log entries from default block logging
Added by Marcos M about 1 month ago.
Updated 5 days ago.
Plus Target Version:
25.03
Description
On systems that use Snort/Suricata and also log the default blocking rules, the firewall logs can be very noisy due to snort2c blocks. Add an option to disable the logging for these without having to disable the logging for all other default blocking rules.
The "Block IPv4 link-local" block rule can be similarly noisy.
Files
- Status changed from In Progress to Pull Request Review
- Status changed from Pull Request Review to Feedback
- % Done changed from 0 to 100
- Subject changed from Separate snort2c firewall logs from the default blocking logs to Separate snort2c and link-local firewall logs from the default blocking logs
- Description updated (diff)
- Subject changed from Separate snort2c and link-local firewall logs from the default blocking logs to Separate IDS/IPS and link-local firewall log entries from default block logging
additional logging preferences are present in 25.03.b.20250414.1838 for specific network subsets and IDS/IPS blocked hosts disabling

Also available in: Atom
PDF