[Oisf-users] OT: Rule Updates

Andreas Herz andi at geekosphere.org
Fri Nov 6 23:41:17 UTC 2015


On 06/11/15 at 16:14, Phil Daws wrote:
> what are people using now to update their rules ? I used to use
> pulledpork for fetching both ET and Snort open rules but that no
> longer seems to work.

I never used pulledpork, but to answer your question:

1. simple wget to ET open suricata rules

2. oinkmaster, see
https://redmine.openinfosecfoundation.org/projects/suricata/wiki/Rule_Management_with_Oinkmaster

3. rulecat from jason ish, see
http://blog.jasonish.org/2015/05/27/another-ids-rule-downloader-rulecat/

Maybe some alternative is better for you, so you don't need to dig
deeper into the pulledpork issue

-- 
Andreas Herz



More information about the Oisf-users mailing list