Hi everybody:<br> I use suricata by IPS mode, I want some rules take effect for certain IP or subnet when use suricata, and I want set action type and whether to record log, etc. I would like to know suricata 1.3.4 version whether implements this feature?<br>
Then when I learn suricata source codes about threshold.config, I found it 'get type of rule' matched with 'rate' in SCThresholdConfAddThresholdtype() function, but write 'rate_filter' into threshold.config in test function SCThresholdConfGenerateValidDummyFD08(), which contrary to the previous.Why?<br>
Thank you!<br><br>