Project

General

Profile

Actions

New Content #9454

open

Add examples of Snort Suppression Lists to stop alerts based on source and destination IP addresses

Added by Michael De almost 4 years ago. Updated 7 months ago.

Status:
New
Priority:
Low
Assignee:
-
Category:
IDS / IPS
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:

Description

Page: https://docs.netgate.com/pfsense/en/latest/packages/snort/suppress-list.html

Feedback:

The documentation discusses using suppression to disable "the rule to stop alerts based on either the source or destination IP" but gives no examples of doing this.

An example of both source and destination blocking would be very helpful.

Actions #1

Updated by Jim Pingle over 2 years ago

  • Description updated (diff)
Actions #2

Updated by Jim Pingle 7 months ago

  • Category changed from Interfaces to IDS / IPS
Actions #3

Updated by Jim Pingle 7 months ago

  • Tracker changed from Correction to New Content
  • Subject changed from Feedback on IDS / IPS — Snort Suppression Lists to Add examples of Snort Suppression Lists to stop alerts based on source and destination IP addresses
  • Assignee deleted (Jim Pingle)
Actions #4

Updated by Jim Pingle 7 months ago

  • Start date deleted (04/04/2019)
  • Estimated time deleted (1.00 h)
Actions

Also available in: Atom PDF