[IPS (suricata)] “What Every IDS User Should Do"?

The IPFire IPS uses the rulesets defined in the table on the webpage.

There are no additional rules added related to unused ports or anything else.

As the link writes:-

You should consider and adjust these port ranges to suit your own need.

The port ranges to provide rules for can not be done on a generic basis.

You can however create those rules yourself and add them to the selected ruleset you have chosen. You can create a local.rules file where you can add your own developed rules. See the following thread for details.

https://community.ipfire.org/t/custom-suricata-rules/4656/6