[Oisf-devel] Need Help To Customize Packet Source of Suricata

Maloy Kundu maloy.kundu at gmail.com
Mon Mar 9 06:40:15 UTC 2020


I have one question about changing the packet source of Suricata.

Suricata  receives packets from network interface by default. I need to
have understanding or knowledge about how to modify the packet source of
Suricata. Instead of probe interface, Suricata will receive packet from
another process using shared memory. A process that receives packets from
network probe interface will write packet in shard memory and from that
shared memory Suricata will pick those packets for processing.

Can you please share knowledge or some pointers on this?

Maloy Kundu
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-devel/attachments/20200309/81595264/attachment.html>

More information about the Oisf-devel mailing list