[Oisf-users] Suricata with multiple NICs

Peter Bates peter.bates at ucl.ac.uk
Tue Nov 22 13:59:32 UTC 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Hello all

I've been reading the Suricata documents and
https://redmine.openinfosecfoundation.org/projects/suricata/wiki/Suricatayaml
- - to try and get a handle on the different modes of operation Suricata
supports.

I have a host with 4 NICs and 8 CPU cores - in a perfect world it
would be nice to have different netblocks split onto the different
NICs and for Suricata to process traffic from them all.

Is this possible with one of the different modes (I'm using AF_PACKET
at the moment with one NIC) - or does it involve running multiple
instances?

Thanks.

- -- 
Peter Bates
Senior Computer Security Officer    Phone: +44(0)2076792049
Information Services Division	    Internal Ext: 32049
University College London
London WC1E 6BT
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.17 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQEcBAEBAgAGBQJOy6rDAAoJELhVoVpEMS6R/6MH+wTH1PNhP7uUCex37iHOkSiO
Z42moQqF99nPSUM3KL61Cm1vK7BNjMuEhgUjw5hRBxUYgpWeASCHgUX3D125Gejb
FzstGkRrneYrKQCG5qZMXPd9a43TiepTm8yx34g9PJzBBE7QVWLr4qaDYUSiqMzO
8ecd7M5o5mAvCUx7MSx9IxdZU6Wbkz30fKtyax6Y2XeItO2JsGBNNgg8S9YANfoy
GpyV0epKcO7+RoMtB69iHtcvDTQeAh/NoGOdpLGfwCGEVC0bAo6W1JdSRH0nToAu
8APu8nmUZwAFb2y9X9j6EcUybzGXL9xgen08iQZioV0YQ6NmZCnntZK932grvFs=
=ZO0A
-----END PGP SIGNATURE-----




More information about the Oisf-users mailing list