[Oisf-users] reject-rules don't drop packages

Thorsten Wagener - Travanto Travel twagener at travanto.de
Tue Jan 10 09:56:46 UTC 2012


Hi,

my suricata Version 1.1.1 does not drop packages from reject rules. 

I know that there was a Bug, which was fixed in v1.1beta2 but it is still there. Can anyone confirm this Problem? 

Drop-rule works and bad traffic is dropped. with reject the traffic is not dropped, but a tcp/rst package is sent. Sometimes the rst-package is incoming before the answer and the connection is cancled, but the bad traffic is still not dropped. 

stream inline is set to yes. 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20120110/5eef4b7f/attachment-0002.html>


More information about the Oisf-users mailing list