[Oisf-users] wanna ask about suricata1-4-1 and IPTABLES

Eric Leblond eric at regit.org
Sun Jul 21 20:32:05 UTC 2013


Le lundi 22 juillet 2013 à 00:44 +0800, Dimas Ctr a écrit :
> hello 
> my name is dimas, i have some problem about suricata.
> im using debian 6 and suricata 1-4-1, i used IPS mode.
> i had used Iptables for running suricata in IPS mode, the command : 
> #  iptables -A INPUT -p icmp -j NFQUEUE 
> #  iptables -A OUTPUT -p icmp -j NFQUEUE
> i had test with "ping" and that worked to block the packet  . but no
> one report wrote on log directory of suricata ,
> what should i do sir ?? please help me .

How did you start suricata ? It is not supposed to block ping by

Did you use the "-q 0" option ?

PS: please provide as detailed information as possible when you ask for


> thanx before
> - regrad -
> dimas from indonesia
> _______________________________________________
> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
> OISF: http://www.openinfosecfoundation.org/

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 190 bytes
Desc: This is a digitally signed message part
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20130721/dd727efc/attachment.sig>

More information about the Oisf-users mailing list