DROP only INLINE modeHere is a draft suricata "drop" rule
nmap is network mapping and scanning software.use-mmap: yes
.DROP only INLINE mode
Suricata will REJECT according to the rules.
I am very familiar with nmap, but not mmap as is used in suricata.nmap is network mapping and scanning software.
And nothing to do with mmap which is the Suricata option.nmap is network mapping and scanning software.
Drop and reject in iptables both stop the packet, but diff in whether anything is sent back to the sending client. Drop does nothing, so the connection appears to timeout. Reject sends back that the packet is being rejected.
Ahhh..... so the "drop" should be replaced with "REJECT"; good. Does the rule otherwise seem valid?
Great I notice that they are studying.And nothing to do with mmap which is the Suricata option.
Suricata - Suricata - IDS on AsusWRT Merlin
Might test a bit more later this weekend. For now I’m glad I saw a “Drop” (which might be better than the “wDrop”?).www.snbforums.com
Did you monitor your memory usage? wonder if you're running out of available memory for Suricata to work.For the second day in a row Suricata suddenly blocks all internet access from my PC to the outside world... (and even to my router)
(without any log, but if I kill Suricata I have access again)
No, I did not monitor that.Did you monitor your memory usage? wonder if you're running out of available memory for Suricata to work.
Nice!Little easier to read:
View attachment 25280
in the beginning it is like that. Watching your enthusiasm, you will be back soon. Puzzles are addictive.Suricata is a very good IPS/IDS but I do not think it is a good fit for our Asus routers. I have finally realized that I have spent way too much time on it, so I have removed it from my router. I wish the best for further endeavors on this project.
I took a look through your github commit and there's room for some performance gains. I'd recommend using d3 to load the csv for chartjs rather than writing it directly to a js file in the shell script for both the chart and table.Little easier to read:
View attachment 25280
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!