Project

General

Profile

Actions

New Content #9454

open

Add examples of Snort Suppression Lists to stop alerts based on source and destination IP addresses

Added by Michael De over 5 years ago. Updated over 2 years ago.

Status:
New
Priority:
Low
Assignee:
-
Category:
IDS / IPS
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:

Description

Page: https://docs.netgate.com/pfsense/en/latest/packages/snort/suppress-list.html

Feedback:

The documentation discusses using suppression to disable "the rule to stop alerts based on either the source or destination IP" but gives no examples of doing this.

An example of both source and destination blocking would be very helpful.

Actions

Also available in: Atom PDF