Bug 11981 - suricata fails to detect traffic from and to firewall
Summary: suricata fails to detect traffic from and to firewall
Status: CLOSED FIXED
Alias: None
Product: IPFire
Classification: Unclassified
Component: --- (show other bugs)
Version: 2
Hardware: unspecified Unspecified
: - Unknown - Security
Assignee: Stefan Schantl
QA Contact:
URL:
Keywords:
Depends on:
Blocks: SURICATA 11838
  Show dependency treegraph
 
Reported: 2019-01-29 12:19 UTC by Michael Tremer
Modified: 2019-02-05 12:55 UTC (History)
0 users

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Michael Tremer 2019-01-29 12:19:14 UTC
suricata does not drop any packets from and to the firewall. That is caused by not having the RED IP address space (including aliases) in the HOME_NET variable.

Should any static routes be in here, too?

Please also merge my patch to scan any outgoing packets:

https://patchwork.ipfire.org/patch/2054/