Tor and IPS conflict --SURICATA Rulset where does it come from?

As promised I want to share the effort with you.

I developed a mechanism which loads additional service related rules to silence some IDS alerts and prevents the flooding of the log file.

As usual for development processes, I posted all details to our development mailing list, which can be found here:

https://lists.ipfire.org/pipermail/development/2022-July/013936.html

In case you join testing do not post your feedback here, please do this on the mailing list.

-Stefan

4 Likes